blob: 2f05d4415aee2d098c6802ceb54dd4eb21cc1864 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Kelvin Zhang5ef25192022-10-19 11:25:22 -070023from genericpath import isdir
Doug Zongkereef39442009-04-02 12:14:19 -070024import getopt
25import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010026import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070027import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070028import json
29import logging
30import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070031import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080032import platform
Doug Zongkereef39442009-04-02 12:14:19 -070033import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070034import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070035import shutil
36import subprocess
37import sys
38import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070039import threading
40import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070041import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080042from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070043
Tianjie Xu41976c72019-07-03 13:57:01 -070044import images
Kelvin Zhang27324132021-03-22 15:38:38 -040045import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080046import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070047from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070048
Tao Bao32fcdab2018-10-12 10:30:39 -070049logger = logging.getLogger(__name__)
50
Tao Bao986ee862018-10-04 15:46:16 -070051
Dan Albert8b72aef2015-03-23 19:13:21 -070052class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070053
Dan Albert8b72aef2015-03-23 19:13:21 -070054 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070055 # Set up search path, in order to find framework/ and lib64/. At the time of
56 # running this function, user-supplied search path (`--path`) hasn't been
57 # available. So the value set here is the default, which might be overridden
58 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040059 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070060 if exec_path.endswith('.py'):
61 script_name = os.path.basename(exec_path)
62 # logger hasn't been initialized yet at this point. Use print to output
63 # warnings.
64 print(
65 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040066 'executable -- build and run `{}` directly.'.format(
67 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070068 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040069 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030070
Dan Albert8b72aef2015-03-23 19:13:21 -070071 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080072 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
73 if "ANDROID_HOST_OUT" in os.environ:
74 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080075 self.signapk_shared_library_path = "lib64" # Relative to search_path
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020076 self.sign_sepolicy_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.extra_signapk_args = []
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020078 self.extra_sign_sepolicy_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000079 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.java_path = "java" # Use the one on the path by default.
Sorin Basca05085832022-09-14 11:33:22 +010081 self.java_args = ["-Xmx4096m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080082 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070083 self.public_key_suffix = ".x509.pem"
84 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070085 # use otatools built boot_signer by default
Dan Albert8b72aef2015-03-23 19:13:21 -070086 self.verbose = False
87 self.tempfiles = []
88 self.device_specific = None
89 self.extras = {}
90 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070091 self.source_info_dict = None
92 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070093 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070094 # Stash size cannot exceed cache_size * threshold.
95 self.cache_size = None
96 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070097 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070098 self.host_tools = {}
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +020099 self.sepolicy_name = 'sepolicy.apex'
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800112# descriptor into vbmeta.img. When adding a new entry here, the
113# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
114# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000115AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Lucas Wei03230252022-04-18 16:00:40 +0800116 'system', 'system_ext', 'vendor', 'vendor_boot', 'vendor_kernel_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000117 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800118
Tao Bao08c190f2019-06-03 23:07:58 -0700119# Chained VBMeta partitions.
120AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
121
Tianjie Xu861f4132018-09-12 11:49:33 -0700122# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400123PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700124 'system',
125 'vendor',
126 'product',
127 'system_ext',
128 'odm',
129 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700130 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000131 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
433 self._device = self.GetOemProperty("ro.product.device")
434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700457 def is_android_r(self):
458 system_prop = self.info_dict.get("system.build.prop")
459 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
460
461 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700462 def is_vabc_xor(self):
463 vendor_prop = self.info_dict.get("vendor.build.prop")
464 vabc_xor_enabled = vendor_prop and \
465 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
466 return vabc_xor_enabled
467
468 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400469 def vendor_suppressed_vabc(self):
470 vendor_prop = self.info_dict.get("vendor.build.prop")
471 vabc_suppressed = vendor_prop and \
472 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
473 return vabc_suppressed and vabc_suppressed.lower() == "true"
474
475 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700476 def oem_props(self):
477 return self._oem_props
478
479 def __getitem__(self, key):
480 return self.info_dict[key]
481
482 def __setitem__(self, key, value):
483 self.info_dict[key] = value
484
485 def get(self, key, default=None):
486 return self.info_dict.get(key, default)
487
488 def items(self):
489 return self.info_dict.items()
490
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000491 def _GetRawBuildProp(self, prop, partition):
492 prop_file = '{}.build.prop'.format(
493 partition) if partition else 'build.prop'
494 partition_props = self.info_dict.get(prop_file)
495 if not partition_props:
496 return None
497 return partition_props.GetProp(prop)
498
Daniel Normand5fe8622020-01-08 17:01:11 -0800499 def GetPartitionBuildProp(self, prop, partition):
500 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800501
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000502 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000503 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000504 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800505
Daniel Normand5fe8622020-01-08 17:01:11 -0800506 # If provided a partition for this property, only look within that
507 # partition's build.prop.
508 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800509 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800510 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800511 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000512
513 prop_val = self._GetRawBuildProp(prop, partition)
514 if prop_val is not None:
515 return prop_val
516 raise ExternalError("couldn't find %s in %s.build.prop" %
517 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800518
Tao Bao1c320f82019-10-04 23:25:12 -0700519 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800520 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700521 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
522 return self._ResolveRoProductBuildProp(prop)
523
Tianjiefdda51d2021-05-05 14:46:35 -0700524 if prop == "ro.build.id":
525 return self._GetBuildId()
526
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000527 prop_val = self._GetRawBuildProp(prop, None)
528 if prop_val is not None:
529 return prop_val
530
531 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700532
533 def _ResolveRoProductBuildProp(self, prop):
534 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000535 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700536 if prop_val:
537 return prop_val
538
Steven Laver8e2086e2020-04-27 16:26:31 -0700539 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000540 source_order_val = self._GetRawBuildProp(
541 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700542 if source_order_val:
543 source_order = source_order_val.split(",")
544 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700545 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700546
547 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700548 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700549 raise ExternalError(
550 "Invalid ro.product.property_source_order '{}'".format(source_order))
551
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000552 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700553 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000554 "ro.product", "ro.product.{}".format(source_partition), 1)
555 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700556 if prop_val:
557 return prop_val
558
559 raise ExternalError("couldn't resolve {}".format(prop))
560
Steven Laver8e2086e2020-04-27 16:26:31 -0700561 def _GetRoProductPropsDefaultSourceOrder(self):
562 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
563 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000564 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700565 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000566 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700567 if android_version == "10":
568 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
569 # NOTE: float() conversion of android_version will have rounding error.
570 # We are checking for "9" or less, and using "< 10" is well outside of
571 # possible floating point rounding.
572 try:
573 android_version_val = float(android_version)
574 except ValueError:
575 android_version_val = 0
576 if android_version_val < 10:
577 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
578 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
579
Tianjieb37c5be2020-10-15 21:27:10 -0700580 def _GetPlatformVersion(self):
581 version_sdk = self.GetBuildProp("ro.build.version.sdk")
582 # init code switches to version_release_or_codename (see b/158483506). After
583 # API finalization, release_or_codename will be the same as release. This
584 # is the best effort to support pre-S dev stage builds.
585 if int(version_sdk) >= 30:
586 try:
587 return self.GetBuildProp("ro.build.version.release_or_codename")
588 except ExternalError:
589 logger.warning('Failed to find ro.build.version.release_or_codename')
590
591 return self.GetBuildProp("ro.build.version.release")
592
Tianjiefdda51d2021-05-05 14:46:35 -0700593 def _GetBuildId(self):
594 build_id = self._GetRawBuildProp("ro.build.id", None)
595 if build_id:
596 return build_id
597
598 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
599 if not legacy_build_id:
600 raise ExternalError("Couldn't find build id in property file")
601
602 if self.use_legacy_id:
603 return legacy_build_id
604
605 # Append the top 8 chars of vbmeta digest to the existing build id. The
606 # logic needs to match the one in init, so that OTA can deliver correctly.
607 avb_enable = self.info_dict.get("avb_enable") == "true"
608 if not avb_enable:
609 raise ExternalError("AVB isn't enabled when using legacy build id")
610
611 vbmeta_digest = self.info_dict.get("vbmeta_digest")
612 if not vbmeta_digest:
613 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
614 " id")
615 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
616 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
617
618 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
619 return legacy_build_id + '.' + digest_prefix
620
Tianjieb37c5be2020-10-15 21:27:10 -0700621 def _GetPartitionPlatformVersion(self, partition):
622 try:
623 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
624 partition)
625 except ExternalError:
626 return self.GetPartitionBuildProp("ro.build.version.release",
627 partition)
628
Tao Bao1c320f82019-10-04 23:25:12 -0700629 def GetOemProperty(self, key):
630 if self.oem_props is not None and key in self.oem_props:
631 return self.oem_dicts[0][key]
632 return self.GetBuildProp(key)
633
Daniel Normand5fe8622020-01-08 17:01:11 -0800634 def GetPartitionFingerprint(self, partition):
635 return self._partition_fingerprints.get(partition, None)
636
637 def CalculatePartitionFingerprint(self, partition):
638 try:
639 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
640 except ExternalError:
641 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
642 self.GetPartitionBuildProp("ro.product.brand", partition),
643 self.GetPartitionBuildProp("ro.product.name", partition),
644 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700645 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800646 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400647 self.GetPartitionBuildProp(
648 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800649 self.GetPartitionBuildProp("ro.build.type", partition),
650 self.GetPartitionBuildProp("ro.build.tags", partition))
651
Tao Bao1c320f82019-10-04 23:25:12 -0700652 def CalculateFingerprint(self):
653 if self.oem_props is None:
654 try:
655 return self.GetBuildProp("ro.build.fingerprint")
656 except ExternalError:
657 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
658 self.GetBuildProp("ro.product.brand"),
659 self.GetBuildProp("ro.product.name"),
660 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700661 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700662 self.GetBuildProp("ro.build.id"),
663 self.GetBuildProp("ro.build.version.incremental"),
664 self.GetBuildProp("ro.build.type"),
665 self.GetBuildProp("ro.build.tags"))
666 return "%s/%s/%s:%s" % (
667 self.GetOemProperty("ro.product.brand"),
668 self.GetOemProperty("ro.product.name"),
669 self.GetOemProperty("ro.product.device"),
670 self.GetBuildProp("ro.build.thumbprint"))
671
672 def WriteMountOemScript(self, script):
673 assert self.oem_props is not None
674 recovery_mount_options = self.info_dict.get("recovery_mount_options")
675 script.Mount("/oem", recovery_mount_options)
676
677 def WriteDeviceAssertions(self, script, oem_no_mount):
678 # Read the property directly if not using OEM properties.
679 if not self.oem_props:
680 script.AssertDevice(self.device)
681 return
682
683 # Otherwise assert OEM properties.
684 if not self.oem_dicts:
685 raise ExternalError(
686 "No OEM file provided to answer expected assertions")
687
688 for prop in self.oem_props.split():
689 values = []
690 for oem_dict in self.oem_dicts:
691 if prop in oem_dict:
692 values.append(oem_dict[prop])
693 if not values:
694 raise ExternalError(
695 "The OEM file is missing the property %s" % (prop,))
696 script.AssertOemProperty(prop, values, oem_no_mount)
697
698
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000699def ReadFromInputFile(input_file, fn):
700 """Reads the contents of fn from input zipfile or directory."""
701 if isinstance(input_file, zipfile.ZipFile):
702 return input_file.read(fn).decode()
Kelvin Zhang5ef25192022-10-19 11:25:22 -0700703 elif zipfile.is_zipfile(input_file):
704 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
705 return zfp.read(fn).decode()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000706 else:
Kelvin Zhang5ef25192022-10-19 11:25:22 -0700707 if not os.path.isdir(input_file):
708 raise ValueError(
709 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000710 path = os.path.join(input_file, *fn.split("/"))
711 try:
712 with open(path) as f:
713 return f.read()
714 except IOError as e:
715 if e.errno == errno.ENOENT:
716 raise KeyError(fn)
717
718
Yifan Hong10482a22021-01-07 14:38:41 -0800719def ExtractFromInputFile(input_file, fn):
720 """Extracts the contents of fn from input zipfile or directory into a file."""
721 if isinstance(input_file, zipfile.ZipFile):
722 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500723 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800724 f.write(input_file.read(fn))
725 return tmp_file
Kelvin Zhangeb147e02022-10-21 10:53:21 -0700726 elif zipfile.is_zipfile(input_file):
727 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
728 tmp_file = MakeTempFile(os.path.basename(fn))
729 with open(tmp_file, "wb") as fp:
730 fp.write(zfp.read(fn))
731 return tmp_file
Yifan Hong10482a22021-01-07 14:38:41 -0800732 else:
Kelvin Zhangeb147e02022-10-21 10:53:21 -0700733 if not os.path.isdir(input_file):
734 raise ValueError(
735 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
Yifan Hong10482a22021-01-07 14:38:41 -0800736 file = os.path.join(input_file, *fn.split("/"))
737 if not os.path.exists(file):
738 raise KeyError(fn)
739 return file
740
Kelvin Zhang563750f2021-04-28 12:46:17 -0400741
jiajia tangf3f842b2021-03-17 21:49:44 +0800742class RamdiskFormat(object):
743 LZ4 = 1
744 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800745
Kelvin Zhang563750f2021-04-28 12:46:17 -0400746
TJ Rhoades6f488e92022-05-01 22:16:22 -0700747def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800748 if info_dict.get('lz4_ramdisks') == 'true':
749 ramdisk_format = RamdiskFormat.LZ4
750 else:
751 ramdisk_format = RamdiskFormat.GZ
752 return ramdisk_format
753
Kelvin Zhang563750f2021-04-28 12:46:17 -0400754
Tao Bao410ad8b2018-08-24 12:08:38 -0700755def LoadInfoDict(input_file, repacking=False):
756 """Loads the key/value pairs from the given input target_files.
757
Tianjiea85bdf02020-07-29 11:56:19 -0700758 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700759 checks and returns the parsed key/value pairs for to the given build. It's
760 usually called early when working on input target_files files, e.g. when
761 generating OTAs, or signing builds. Note that the function may be called
762 against an old target_files file (i.e. from past dessert releases). So the
763 property parsing needs to be backward compatible.
764
765 In a `META/misc_info.txt`, a few properties are stored as links to the files
766 in the PRODUCT_OUT directory. It works fine with the build system. However,
767 they are no longer available when (re)generating images from target_files zip.
768 When `repacking` is True, redirect these properties to the actual files in the
769 unzipped directory.
770
771 Args:
772 input_file: The input target_files file, which could be an open
773 zipfile.ZipFile instance, or a str for the dir that contains the files
774 unzipped from a target_files file.
775 repacking: Whether it's trying repack an target_files file after loading the
776 info dict (default: False). If so, it will rewrite a few loaded
777 properties (e.g. selinux_fc, root_dir) to point to the actual files in
778 target_files file. When doing repacking, `input_file` must be a dir.
779
780 Returns:
781 A dict that contains the parsed key/value pairs.
782
783 Raises:
784 AssertionError: On invalid input arguments.
785 ValueError: On malformed input values.
786 """
787 if repacking:
788 assert isinstance(input_file, str), \
789 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700790
Doug Zongkerc9253822014-02-04 12:17:58 -0800791 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000792 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800793
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700794 try:
Michael Runge6e836112014-04-15 17:40:21 -0700795 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700796 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700797 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700798
Tao Bao410ad8b2018-08-24 12:08:38 -0700799 if "recovery_api_version" not in d:
800 raise ValueError("Failed to find 'recovery_api_version'")
801 if "fstab_version" not in d:
802 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800803
Tao Bao410ad8b2018-08-24 12:08:38 -0700804 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700805 # "selinux_fc" properties should point to the file_contexts files
806 # (file_contexts.bin) under META/.
807 for key in d:
808 if key.endswith("selinux_fc"):
809 fc_basename = os.path.basename(d[key])
810 fc_config = os.path.join(input_file, "META", fc_basename)
811 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700812
Daniel Norman72c626f2019-05-13 15:58:14 -0700813 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700814
Tom Cherryd14b8952018-08-09 14:26:00 -0700815 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700816 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700817 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700818 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700819
David Anderson0ec64ac2019-12-06 12:21:18 -0800820 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700821 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000822 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800823 key_name = part_name + "_base_fs_file"
824 if key_name not in d:
825 continue
826 basename = os.path.basename(d[key_name])
827 base_fs_file = os.path.join(input_file, "META", basename)
828 if os.path.exists(base_fs_file):
829 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700830 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700831 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800832 "Failed to find %s base fs file: %s", part_name, base_fs_file)
833 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700834
Doug Zongker37974732010-09-16 17:44:38 -0700835 def makeint(key):
836 if key in d:
837 d[key] = int(d[key], 0)
838
839 makeint("recovery_api_version")
840 makeint("blocksize")
841 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700842 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700843 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700844 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700845 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800846 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700847
Steve Muckle903a1ca2020-05-07 17:32:10 -0700848 boot_images = "boot.img"
849 if "boot_images" in d:
850 boot_images = d["boot_images"]
851 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400852 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700853
Tao Bao765668f2019-10-04 22:03:00 -0700854 # Load recovery fstab if applicable.
855 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700856 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800857
Tianjie Xu861f4132018-09-12 11:49:33 -0700858 # Tries to load the build props for all partitions with care_map, including
859 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800860 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800861 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000862 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800863 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700864 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800865
Tao Bao3ed35d32019-10-07 20:48:48 -0700866 # Set up the salt (based on fingerprint) that will be used when adding AVB
867 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800868 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700869 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800870 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800871 fingerprint = build_info.GetPartitionFingerprint(partition)
872 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400873 d["avb_{}_salt".format(partition)] = sha256(
874 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700875
Yong Ma253b1062022-08-18 09:53:27 +0000876 # Set up the salt for partitions without build.prop
877 if build_info.fingerprint:
878 d["avb_salt"] = sha256(build_info.fingerprint.encode()).hexdigest()
879
Tianjiefdda51d2021-05-05 14:46:35 -0700880 # Set the vbmeta digest if exists
881 try:
882 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
883 except KeyError:
884 pass
885
Kelvin Zhang39aea442020-08-17 11:04:25 -0400886 try:
887 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
888 except KeyError:
889 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700890 return d
891
Tao Baod1de6f32017-03-01 16:38:48 -0800892
Daniel Norman4cc9df62019-07-18 10:11:07 -0700893def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900894 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700895 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900896
Daniel Norman4cc9df62019-07-18 10:11:07 -0700897
898def LoadDictionaryFromFile(file_path):
899 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900900 return LoadDictionaryFromLines(lines)
901
902
Michael Runge6e836112014-04-15 17:40:21 -0700903def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700904 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700905 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700906 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700907 if not line or line.startswith("#"):
908 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700909 if "=" in line:
910 name, value = line.split("=", 1)
911 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700912 return d
913
Tao Baod1de6f32017-03-01 16:38:48 -0800914
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000915class PartitionBuildProps(object):
916 """The class holds the build prop of a particular partition.
917
918 This class loads the build.prop and holds the build properties for a given
919 partition. It also partially recognizes the 'import' statement in the
920 build.prop; and calculates alternative values of some specific build
921 properties during runtime.
922
923 Attributes:
924 input_file: a zipped target-file or an unzipped target-file directory.
925 partition: name of the partition.
926 props_allow_override: a list of build properties to search for the
927 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000928 build_props: a dict of build properties for the given partition.
929 prop_overrides: a set of props that are overridden by import.
930 placeholder_values: A dict of runtime variables' values to replace the
931 placeholders in the build.prop file. We expect exactly one value for
932 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800933 ramdisk_format: If name is "boot", the format of ramdisk inside the
934 boot image. Otherwise, its value is ignored.
935 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000936 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400937
Tianjie Xu9afb2212020-05-10 21:48:15 +0000938 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000939 self.input_file = input_file
940 self.partition = name
941 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000942 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000943 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000944 self.prop_overrides = set()
945 self.placeholder_values = {}
946 if placeholder_values:
947 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000948
949 @staticmethod
950 def FromDictionary(name, build_props):
951 """Constructs an instance from a build prop dictionary."""
952
953 props = PartitionBuildProps("unknown", name)
954 props.build_props = build_props.copy()
955 return props
956
957 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800958 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000959 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800960
Devin Mooreafdd7c72021-12-13 22:04:08 +0000961 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400962 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000963 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800964 else:
965 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
966
967 props = PartitionBuildProps(input_file, name, placeholder_values)
968 props._LoadBuildProp(data)
969 return props
970
971 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000972 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800973 """
974 Read build.prop for boot image from input_file.
975 Return empty string if not found.
976 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000977 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800978 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000979 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800980 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000981 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800982 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800983 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800984 if prop_file is None:
985 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500986 with open(prop_file, "r") as f:
987 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800988
989 @staticmethod
990 def _ReadPartitionPropFile(input_file, name):
991 """
992 Read build.prop for name from input_file.
993 Return empty string if not found.
994 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000995 data = ''
996 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
997 '{}/build.prop'.format(name.upper())]:
998 try:
999 data = ReadFromInputFile(input_file, prop_file)
1000 break
1001 except KeyError:
1002 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -08001003 if data == '':
1004 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -08001005 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001006
Yifan Hong125d0b62020-09-24 17:07:03 -07001007 @staticmethod
1008 def FromBuildPropFile(name, build_prop_file):
1009 """Constructs an instance from a build prop file."""
1010
1011 props = PartitionBuildProps("unknown", name)
1012 with open(build_prop_file) as f:
1013 props._LoadBuildProp(f.read())
1014 return props
1015
Tianjie Xu9afb2212020-05-10 21:48:15 +00001016 def _LoadBuildProp(self, data):
1017 for line in data.split('\n'):
1018 line = line.strip()
1019 if not line or line.startswith("#"):
1020 continue
1021 if line.startswith("import"):
1022 overrides = self._ImportParser(line)
1023 duplicates = self.prop_overrides.intersection(overrides.keys())
1024 if duplicates:
1025 raise ValueError('prop {} is overridden multiple times'.format(
1026 ','.join(duplicates)))
1027 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1028 self.build_props.update(overrides)
1029 elif "=" in line:
1030 name, value = line.split("=", 1)
1031 if name in self.prop_overrides:
1032 raise ValueError('prop {} is set again after overridden by import '
1033 'statement'.format(name))
1034 self.build_props[name] = value
1035
1036 def _ImportParser(self, line):
1037 """Parses the build prop in a given import statement."""
1038
1039 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001040 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001041 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001042
1043 if len(tokens) == 3:
1044 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1045 return {}
1046
Tianjie Xu9afb2212020-05-10 21:48:15 +00001047 import_path = tokens[1]
1048 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001049 logger.warn('Unrecognized import path {}'.format(line))
1050 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001051
1052 # We only recognize a subset of import statement that the init process
1053 # supports. And we can loose the restriction based on how the dynamic
1054 # fingerprint is used in practice. The placeholder format should be
1055 # ${placeholder}, and its value should be provided by the caller through
1056 # the placeholder_values.
1057 for prop, value in self.placeholder_values.items():
1058 prop_place_holder = '${{{}}}'.format(prop)
1059 if prop_place_holder in import_path:
1060 import_path = import_path.replace(prop_place_holder, value)
1061 if '$' in import_path:
1062 logger.info('Unresolved place holder in import path %s', import_path)
1063 return {}
1064
1065 import_path = import_path.replace('/{}'.format(self.partition),
1066 self.partition.upper())
1067 logger.info('Parsing build props override from %s', import_path)
1068
1069 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1070 d = LoadDictionaryFromLines(lines)
1071 return {key: val for key, val in d.items()
1072 if key in self.props_allow_override}
1073
Kelvin Zhang5ef25192022-10-19 11:25:22 -07001074 def __getstate__(self):
1075 state = self.__dict__.copy()
1076 # Don't pickle baz
1077 if "input_file" in state and isinstance(state["input_file"], zipfile.ZipFile):
1078 state["input_file"] = state["input_file"].filename
1079 return state
1080
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001081 def GetProp(self, prop):
1082 return self.build_props.get(prop)
1083
1084
Tianjie Xucfa86222016-03-07 16:31:19 -08001085def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1086 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001087 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001088 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001089 self.mount_point = mount_point
1090 self.fs_type = fs_type
1091 self.device = device
1092 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001093 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001094 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001095
1096 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001097 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001098 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001099 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001100 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001101
Tao Baod1de6f32017-03-01 16:38:48 -08001102 assert fstab_version == 2
1103
1104 d = {}
1105 for line in data.split("\n"):
1106 line = line.strip()
1107 if not line or line.startswith("#"):
1108 continue
1109
1110 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1111 pieces = line.split()
1112 if len(pieces) != 5:
1113 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1114
1115 # Ignore entries that are managed by vold.
1116 options = pieces[4]
1117 if "voldmanaged=" in options:
1118 continue
1119
1120 # It's a good line, parse it.
1121 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001122 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001123 options = options.split(",")
1124 for i in options:
1125 if i.startswith("length="):
1126 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001127 elif i == "slotselect":
1128 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001129 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001130 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001131 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001132
Tao Baod1de6f32017-03-01 16:38:48 -08001133 mount_flags = pieces[3]
1134 # Honor the SELinux context if present.
1135 context = None
1136 for i in mount_flags.split(","):
1137 if i.startswith("context="):
1138 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001139
Tao Baod1de6f32017-03-01 16:38:48 -08001140 mount_point = pieces[1]
1141 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001142 device=pieces[0], length=length, context=context,
1143 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001144
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001145 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001146 # system. Other areas assume system is always at "/system" so point /system
1147 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001148 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001149 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001150 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001151 return d
1152
1153
Tao Bao765668f2019-10-04 22:03:00 -07001154def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1155 """Finds the path to recovery fstab and loads its contents."""
1156 # recovery fstab is only meaningful when installing an update via recovery
1157 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001158 if info_dict.get('ab_update') == 'true' and \
1159 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001160 return None
1161
1162 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1163 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1164 # cases, since it may load the info_dict from an old build (e.g. when
1165 # generating incremental OTAs from that build).
1166 system_root_image = info_dict.get('system_root_image') == 'true'
1167 if info_dict.get('no_recovery') != 'true':
1168 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1169 if isinstance(input_file, zipfile.ZipFile):
1170 if recovery_fstab_path not in input_file.namelist():
1171 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1172 else:
1173 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1174 if not os.path.exists(path):
1175 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1176 return LoadRecoveryFSTab(
1177 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1178 system_root_image)
1179
1180 if info_dict.get('recovery_as_boot') == 'true':
1181 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1182 if isinstance(input_file, zipfile.ZipFile):
1183 if recovery_fstab_path not in input_file.namelist():
1184 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1185 else:
1186 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1187 if not os.path.exists(path):
1188 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1189 return LoadRecoveryFSTab(
1190 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1191 system_root_image)
1192
1193 return None
1194
1195
Doug Zongker37974732010-09-16 17:44:38 -07001196def DumpInfoDict(d):
1197 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001198 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001199
Dan Albert8b72aef2015-03-23 19:13:21 -07001200
Daniel Norman55417142019-11-25 16:04:36 -08001201def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001202 """Merges dynamic partition info variables.
1203
1204 Args:
1205 framework_dict: The dictionary of dynamic partition info variables from the
1206 partial framework target files.
1207 vendor_dict: The dictionary of dynamic partition info variables from the
1208 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001209
1210 Returns:
1211 The merged dynamic partition info dictionary.
1212 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001213
1214 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001215 combined = set(a.split())
1216 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001217 combined = [item.strip() for item in combined if item.strip()]
1218 return " ".join(sorted(combined))
1219
1220 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhangf294c872022-10-06 14:21:36 -07001221 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001222 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1223
1224 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001225 # For keys-value pairs that are the same, copy to merged dict
1226 for key in vendor_dict.keys():
1227 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1228 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001229
1230 merged_dict["dynamic_partition_list"] = uniq_concat(
1231 framework_dict.get("dynamic_partition_list", ""),
1232 vendor_dict.get("dynamic_partition_list", ""))
1233
1234 # Super block devices are defined by the vendor dict.
1235 if "super_block_devices" in vendor_dict:
1236 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001237 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001238 key = "super_%s_device_size" % block_device
1239 if key not in vendor_dict:
1240 raise ValueError("Vendor dict does not contain required key %s." % key)
1241 merged_dict[key] = vendor_dict[key]
1242
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001243 # Partition groups and group sizes are defined by the vendor dict because
1244 # these values may vary for each board that uses a shared system image.
1245 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001246 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001247 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001248 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001249 if key not in vendor_dict:
1250 raise ValueError("Vendor dict does not contain required key %s." % key)
1251 merged_dict[key] = vendor_dict[key]
1252
1253 # Set the partition group's partition list using a concatenation of the
1254 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001255 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001256 merged_dict[key] = uniq_concat(
1257 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301258
Daniel Normanb0c75912020-09-24 14:30:21 -07001259 # Various other flags should be copied from the vendor dict, if defined.
1260 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1261 "super_metadata_device", "super_partition_error_limit",
1262 "super_partition_size"):
1263 if key in vendor_dict.keys():
1264 merged_dict[key] = vendor_dict[key]
1265
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001266 return merged_dict
1267
1268
Daniel Norman21c34f72020-11-11 17:25:50 -08001269def PartitionMapFromTargetFiles(target_files_dir):
1270 """Builds a map from partition -> path within an extracted target files directory."""
1271 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1272 possible_subdirs = {
1273 "system": ["SYSTEM"],
1274 "vendor": ["VENDOR", "SYSTEM/vendor"],
1275 "product": ["PRODUCT", "SYSTEM/product"],
1276 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1277 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1278 "vendor_dlkm": [
1279 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1280 ],
1281 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001282 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001283 }
1284 partition_map = {}
1285 for partition, subdirs in possible_subdirs.items():
1286 for subdir in subdirs:
1287 if os.path.exists(os.path.join(target_files_dir, subdir)):
1288 partition_map[partition] = subdir
1289 break
1290 return partition_map
1291
1292
Daniel Normand3351562020-10-29 12:33:11 -07001293def SharedUidPartitionViolations(uid_dict, partition_groups):
1294 """Checks for APK sharedUserIds that cross partition group boundaries.
1295
1296 This uses a single or merged build's shareduid_violation_modules.json
1297 output file, as generated by find_shareduid_violation.py or
1298 core/tasks/find-shareduid-violation.mk.
1299
1300 An error is defined as a sharedUserId that is found in a set of partitions
1301 that span more than one partition group.
1302
1303 Args:
1304 uid_dict: A dictionary created by using the standard json module to read a
1305 complete shareduid_violation_modules.json file.
1306 partition_groups: A list of groups, where each group is a list of
1307 partitions.
1308
1309 Returns:
1310 A list of error messages.
1311 """
1312 errors = []
1313 for uid, partitions in uid_dict.items():
1314 found_in_groups = [
1315 group for group in partition_groups
1316 if set(partitions.keys()) & set(group)
1317 ]
1318 if len(found_in_groups) > 1:
1319 errors.append(
1320 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1321 % (uid, ",".join(sorted(partitions.keys()))))
1322 return errors
1323
1324
Daniel Norman21c34f72020-11-11 17:25:50 -08001325def RunHostInitVerifier(product_out, partition_map):
1326 """Runs host_init_verifier on the init rc files within partitions.
1327
1328 host_init_verifier searches the etc/init path within each partition.
1329
1330 Args:
1331 product_out: PRODUCT_OUT directory, containing partition directories.
1332 partition_map: A map of partition name -> relative path within product_out.
1333 """
1334 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1335 cmd = ["host_init_verifier"]
1336 for partition, path in partition_map.items():
1337 if partition not in allowed_partitions:
1338 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1339 partition)
1340 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1341 # Add --property-contexts if the file exists on the partition.
1342 property_contexts = "%s_property_contexts" % (
1343 "plat" if partition == "system" else partition)
1344 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1345 property_contexts)
1346 if os.path.exists(property_contexts_path):
1347 cmd.append("--property-contexts=%s" % property_contexts_path)
1348 # Add the passwd file if the file exists on the partition.
1349 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1350 if os.path.exists(passwd_path):
1351 cmd.extend(["-p", passwd_path])
1352 return RunAndCheckOutput(cmd)
1353
1354
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001355def AppendAVBSigningArgs(cmd, partition):
1356 """Append signing arguments for avbtool."""
1357 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1358 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001359 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1360 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1361 if os.path.exists(new_key_path):
1362 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001363 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1364 if key_path and algorithm:
1365 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001366 avb_salt = OPTIONS.info_dict.get("avb_salt")
1367 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001368 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001369 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001370
1371
Tao Bao765668f2019-10-04 22:03:00 -07001372def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001373 """Returns the VBMeta arguments for partition.
1374
1375 It sets up the VBMeta argument by including the partition descriptor from the
1376 given 'image', or by configuring the partition as a chained partition.
1377
1378 Args:
1379 partition: The name of the partition (e.g. "system").
1380 image: The path to the partition image.
1381 info_dict: A dict returned by common.LoadInfoDict(). Will use
1382 OPTIONS.info_dict if None has been given.
1383
1384 Returns:
1385 A list of VBMeta arguments.
1386 """
1387 if info_dict is None:
1388 info_dict = OPTIONS.info_dict
1389
1390 # Check if chain partition is used.
1391 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001392 if not key_path:
1393 return ["--include_descriptors_from_image", image]
1394
1395 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1396 # into vbmeta.img. The recovery image will be configured on an independent
1397 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1398 # See details at
1399 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001400 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001401 return []
1402
1403 # Otherwise chain the partition into vbmeta.
1404 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1405 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001406
1407
Tao Bao02a08592018-07-22 12:40:45 -07001408def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1409 """Constructs and returns the arg to build or verify a chained partition.
1410
1411 Args:
1412 partition: The partition name.
1413 info_dict: The info dict to look up the key info and rollback index
1414 location.
1415 key: The key to be used for building or verifying the partition. Defaults to
1416 the key listed in info_dict.
1417
1418 Returns:
1419 A string of form "partition:rollback_index_location:key" that can be used to
1420 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001421 """
1422 if key is None:
1423 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001424 if key and not os.path.exists(key) and OPTIONS.search_path:
1425 new_key_path = os.path.join(OPTIONS.search_path, key)
1426 if os.path.exists(new_key_path):
1427 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001428 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001429 rollback_index_location = info_dict[
1430 "avb_" + partition + "_rollback_index_location"]
1431 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1432
1433
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001434def _HasGkiCertificationArgs():
1435 return ("gki_signing_key_path" in OPTIONS.info_dict and
1436 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001437
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001438
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001439def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001440 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001441 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001442
1443 if not os.path.exists(key_path) and OPTIONS.search_path:
1444 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1445 if os.path.exists(new_key_path):
1446 key_path = new_key_path
1447
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001448 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001449 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001450 raise ExternalError(
1451 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001452
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001453 output_certificate = tempfile.NamedTemporaryFile()
1454 cmd = [
1455 "generate_gki_certificate",
1456 "--name", image_name,
1457 "--algorithm", algorithm,
1458 "--key", key_path,
1459 "--output", output_certificate.name,
1460 image,
1461 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001462
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001463 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1464 signature_args = signature_args.strip()
1465 if signature_args:
1466 cmd.extend(["--additional_avb_args", signature_args])
1467
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001468 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001469 args = args.strip()
1470 if args:
1471 cmd.extend(["--additional_avb_args", args])
1472
1473 RunAndCheckOutput(cmd)
1474
1475 output_certificate.seek(os.SEEK_SET, 0)
1476 data = output_certificate.read()
1477 output_certificate.close()
1478 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001479
1480
Daniel Norman276f0622019-07-26 14:13:51 -07001481def BuildVBMeta(image_path, partitions, name, needed_partitions):
1482 """Creates a VBMeta image.
1483
1484 It generates the requested VBMeta image. The requested image could be for
1485 top-level or chained VBMeta image, which is determined based on the name.
1486
1487 Args:
1488 image_path: The output path for the new VBMeta image.
1489 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001490 values. Only valid partition names are accepted, as partitions listed
1491 in common.AVB_PARTITIONS and custom partitions listed in
1492 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001493 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1494 needed_partitions: Partitions whose descriptors should be included into the
1495 generated VBMeta image.
1496
1497 Raises:
1498 AssertionError: On invalid input args.
1499 """
1500 avbtool = OPTIONS.info_dict["avb_avbtool"]
1501 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1502 AppendAVBSigningArgs(cmd, name)
1503
Hongguang Chenf23364d2020-04-27 18:36:36 -07001504 custom_partitions = OPTIONS.info_dict.get(
1505 "avb_custom_images_partition_list", "").strip().split()
1506
Daniel Norman276f0622019-07-26 14:13:51 -07001507 for partition, path in partitions.items():
1508 if partition not in needed_partitions:
1509 continue
1510 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001511 partition in AVB_VBMETA_PARTITIONS or
1512 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001513 'Unknown partition: {}'.format(partition)
1514 assert os.path.exists(path), \
1515 'Failed to find {} for {}'.format(path, partition)
1516 cmd.extend(GetAvbPartitionArg(partition, path))
1517
1518 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1519 if args and args.strip():
1520 split_args = shlex.split(args)
1521 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001522 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001523 # as a path relative to source tree, which may not be available at the
1524 # same location when running this script (we have the input target_files
1525 # zip only). For such cases, we additionally scan other locations (e.g.
1526 # IMAGES/, RADIO/, etc) before bailing out.
1527 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001528 chained_image = split_args[index + 1]
1529 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001530 continue
1531 found = False
1532 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1533 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001534 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001535 if os.path.exists(alt_path):
1536 split_args[index + 1] = alt_path
1537 found = True
1538 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001539 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001540 cmd.extend(split_args)
1541
1542 RunAndCheckOutput(cmd)
1543
1544
jiajia tang836f76b2021-04-02 14:48:26 +08001545def _MakeRamdisk(sourcedir, fs_config_file=None,
1546 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001547 ramdisk_img = tempfile.NamedTemporaryFile()
1548
1549 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1550 cmd = ["mkbootfs", "-f", fs_config_file,
1551 os.path.join(sourcedir, "RAMDISK")]
1552 else:
1553 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1554 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001555 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001556 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001557 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001558 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001559 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001560 else:
1561 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001562
1563 p2.wait()
1564 p1.wait()
1565 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001566 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001567
1568 return ramdisk_img
1569
1570
Steve Muckle9793cf62020-04-08 18:27:00 -07001571def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001572 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001573 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001574
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001575 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001576 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1577 we are building a two-step special image (i.e. building a recovery image to
1578 be loaded into /boot in two-step OTAs).
1579
1580 Return the image data, or None if sourcedir does not appear to contains files
1581 for building the requested image.
1582 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001583
Yifan Hong63c5ca12020-10-08 11:54:02 -07001584 if info_dict is None:
1585 info_dict = OPTIONS.info_dict
1586
Steve Muckle9793cf62020-04-08 18:27:00 -07001587 # "boot" or "recovery", without extension.
1588 partition_name = os.path.basename(sourcedir).lower()
1589
Yifan Hong63c5ca12020-10-08 11:54:02 -07001590 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001591 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001592 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1593 logger.info("Excluded kernel binary from recovery image.")
1594 else:
1595 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001596 elif partition_name == "init_boot":
1597 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001598 else:
1599 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001600 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001601 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001602 return None
1603
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001604 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1605
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001606 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001607 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001608
Doug Zongkereef39442009-04-02 12:14:19 -07001609 img = tempfile.NamedTemporaryFile()
1610
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001611 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001612 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001613 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1614 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001615
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001616 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1617 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1618
Yifan Hong63c5ca12020-10-08 11:54:02 -07001619 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001620 if kernel_path is not None:
1621 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001622
Benoit Fradina45a8682014-07-14 21:00:43 +02001623 fn = os.path.join(sourcedir, "second")
1624 if os.access(fn, os.F_OK):
1625 cmd.append("--second")
1626 cmd.append(fn)
1627
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001628 fn = os.path.join(sourcedir, "dtb")
1629 if os.access(fn, os.F_OK):
1630 cmd.append("--dtb")
1631 cmd.append(fn)
1632
Doug Zongker171f1cd2009-06-15 22:36:37 -07001633 fn = os.path.join(sourcedir, "cmdline")
1634 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001635 cmd.append("--cmdline")
1636 cmd.append(open(fn).read().rstrip("\n"))
1637
1638 fn = os.path.join(sourcedir, "base")
1639 if os.access(fn, os.F_OK):
1640 cmd.append("--base")
1641 cmd.append(open(fn).read().rstrip("\n"))
1642
Ying Wang4de6b5b2010-08-25 14:29:34 -07001643 fn = os.path.join(sourcedir, "pagesize")
1644 if os.access(fn, os.F_OK):
1645 cmd.append("--pagesize")
1646 cmd.append(open(fn).read().rstrip("\n"))
1647
Steve Mucklef84668e2020-03-16 19:13:46 -07001648 if partition_name == "recovery":
1649 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301650 if not args:
1651 # Fall back to "mkbootimg_args" for recovery image
1652 # in case "recovery_mkbootimg_args" is not set.
1653 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001654 elif partition_name == "init_boot":
1655 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001656 else:
1657 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001658 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001659 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001660
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001661 args = info_dict.get("mkbootimg_version_args")
1662 if args and args.strip():
1663 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001664
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001665 if has_ramdisk:
1666 cmd.extend(["--ramdisk", ramdisk_img.name])
1667
Tao Baod95e9fd2015-03-29 23:07:41 -07001668 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001669 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001670 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001671 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001672 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001673 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001674
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001675 if partition_name == "recovery":
1676 if info_dict.get("include_recovery_dtbo") == "true":
1677 fn = os.path.join(sourcedir, "recovery_dtbo")
1678 cmd.extend(["--recovery_dtbo", fn])
1679 if info_dict.get("include_recovery_acpio") == "true":
1680 fn = os.path.join(sourcedir, "recovery_acpio")
1681 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001682
Tao Bao986ee862018-10-04 15:46:16 -07001683 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001684
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001685 if _HasGkiCertificationArgs():
1686 if not os.path.exists(img.name):
1687 raise ValueError("Cannot find GKI boot.img")
1688 if kernel_path is None or not os.path.exists(kernel_path):
1689 raise ValueError("Cannot find GKI kernel.img")
1690
1691 # Certify GKI images.
1692 boot_signature_bytes = b''
1693 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1694 boot_signature_bytes += _GenerateGkiCertificate(
1695 kernel_path, "generic_kernel")
1696
1697 BOOT_SIGNATURE_SIZE = 16 * 1024
1698 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1699 raise ValueError(
1700 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1701 boot_signature_bytes += (
1702 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1703 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1704
1705 with open(img.name, 'ab') as f:
1706 f.write(boot_signature_bytes)
1707
Tao Baod95e9fd2015-03-29 23:07:41 -07001708 # Sign the image if vboot is non-empty.
hungweichen22e3b012022-08-19 06:35:43 +00001709 if info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001710 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001711 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001712 # We have switched from the prebuilt futility binary to using the tool
1713 # (futility-host) built from the source. Override the setting in the old
1714 # TF.zip.
1715 futility = info_dict["futility"]
1716 if futility.startswith("prebuilts/"):
1717 futility = "futility-host"
1718 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001719 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001720 info_dict["vboot_key"] + ".vbprivk",
1721 info_dict["vboot_subkey"] + ".vbprivk",
1722 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001723 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001724 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001725
Tao Baof3282b42015-04-01 11:21:55 -07001726 # Clean up the temp files.
1727 img_unsigned.close()
1728 img_keyblock.close()
1729
David Zeuthen8fecb282017-12-01 16:24:01 -05001730 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001731 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001732 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001733 if partition_name == "recovery":
1734 part_size = info_dict["recovery_size"]
1735 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001736 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001737 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001738 "--partition_size", str(part_size), "--partition_name",
1739 partition_name]
1740 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001741 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001742 if args and args.strip():
1743 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001744 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001745
1746 img.seek(os.SEEK_SET, 0)
1747 data = img.read()
1748
1749 if has_ramdisk:
1750 ramdisk_img.close()
1751 img.close()
1752
1753 return data
1754
1755
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001756def _SignBootableImage(image_path, prebuilt_name, partition_name,
1757 info_dict=None):
1758 """Performs AVB signing for a prebuilt boot.img.
1759
1760 Args:
1761 image_path: The full path of the image, e.g., /path/to/boot.img.
1762 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001763 boot-5.10.img, recovery.img or init_boot.img.
1764 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001765 info_dict: The information dict read from misc_info.txt.
1766 """
1767 if info_dict is None:
1768 info_dict = OPTIONS.info_dict
1769
1770 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1771 if info_dict.get("avb_enable") == "true":
1772 avbtool = info_dict["avb_avbtool"]
1773 if partition_name == "recovery":
1774 part_size = info_dict["recovery_size"]
1775 else:
1776 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1777
1778 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1779 "--partition_size", str(part_size), "--partition_name",
1780 partition_name]
1781 AppendAVBSigningArgs(cmd, partition_name)
1782 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1783 if args and args.strip():
1784 cmd.extend(shlex.split(args))
1785 RunAndCheckOutput(cmd)
1786
1787
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001788def HasRamdisk(partition_name, info_dict=None):
1789 """Returns true/false to see if a bootable image should have a ramdisk.
1790
1791 Args:
1792 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1793 info_dict: The information dict read from misc_info.txt.
1794 """
1795 if info_dict is None:
1796 info_dict = OPTIONS.info_dict
1797
1798 if partition_name != "boot":
1799 return True # init_boot.img or recovery.img has a ramdisk.
1800
1801 if info_dict.get("recovery_as_boot") == "true":
1802 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1803
Bowgo Tsai85578e02022-04-19 10:50:59 +08001804 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1805 return False # A GKI boot.img has no ramdisk since Android-13.
1806
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001807 if info_dict.get("system_root_image") == "true":
1808 # The ramdisk content is merged into the system.img, so there is NO
1809 # ramdisk in the boot.img or boot-<kernel version>.img.
1810 return False
1811
1812 if info_dict.get("init_boot") == "true":
1813 # The ramdisk is moved to the init_boot.img, so there is NO
1814 # ramdisk in the boot.img or boot-<kernel version>.img.
1815 return False
1816
1817 return True
1818
1819
Doug Zongkerd5131602012-08-02 14:46:42 -07001820def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001821 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001822 """Return a File object with the desired bootable image.
1823
1824 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1825 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1826 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001827
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001828 if info_dict is None:
1829 info_dict = OPTIONS.info_dict
1830
Doug Zongker55d93282011-01-25 17:03:34 -08001831 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1832 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001833 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001834 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001835
1836 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1837 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001838 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001839 return File.FromLocalFile(name, prebuilt_path)
1840
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001841 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001842 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1843 if os.path.exists(prebuilt_path):
1844 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1845 signed_img = MakeTempFile()
1846 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001847 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1848 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001849
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001850 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001851
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001852 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001853
Doug Zongker6f1d0312014-08-22 08:07:12 -07001854 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001855 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001856 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001857 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001858 if data:
1859 return File(name, data)
1860 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001861
Doug Zongkereef39442009-04-02 12:14:19 -07001862
Lucas Wei03230252022-04-18 16:00:40 +08001863def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07001864 """Build a vendor boot image from the specified sourcedir.
1865
1866 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1867 turn them into a vendor boot image.
1868
1869 Return the image data, or None if sourcedir does not appear to contains files
1870 for building the requested image.
1871 """
1872
1873 if info_dict is None:
1874 info_dict = OPTIONS.info_dict
1875
1876 img = tempfile.NamedTemporaryFile()
1877
TJ Rhoades6f488e92022-05-01 22:16:22 -07001878 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08001879 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001880
1881 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1882 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1883
1884 cmd = [mkbootimg]
1885
1886 fn = os.path.join(sourcedir, "dtb")
1887 if os.access(fn, os.F_OK):
Kelvin Zhangf294c872022-10-06 14:21:36 -07001888 has_vendor_kernel_boot = (info_dict.get(
1889 "vendor_kernel_boot", "").lower() == "true")
Lucas Wei03230252022-04-18 16:00:40 +08001890
1891 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
1892 # Otherwise pack dtb into vendor_boot.
1893 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
1894 cmd.append("--dtb")
1895 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07001896
1897 fn = os.path.join(sourcedir, "vendor_cmdline")
1898 if os.access(fn, os.F_OK):
1899 cmd.append("--vendor_cmdline")
1900 cmd.append(open(fn).read().rstrip("\n"))
1901
1902 fn = os.path.join(sourcedir, "base")
1903 if os.access(fn, os.F_OK):
1904 cmd.append("--base")
1905 cmd.append(open(fn).read().rstrip("\n"))
1906
1907 fn = os.path.join(sourcedir, "pagesize")
1908 if os.access(fn, os.F_OK):
1909 cmd.append("--pagesize")
1910 cmd.append(open(fn).read().rstrip("\n"))
1911
1912 args = info_dict.get("mkbootimg_args")
1913 if args and args.strip():
1914 cmd.extend(shlex.split(args))
1915
1916 args = info_dict.get("mkbootimg_version_args")
1917 if args and args.strip():
1918 cmd.extend(shlex.split(args))
1919
1920 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1921 cmd.extend(["--vendor_boot", img.name])
1922
Devin Moore50509012021-01-13 10:45:04 -08001923 fn = os.path.join(sourcedir, "vendor_bootconfig")
1924 if os.access(fn, os.F_OK):
1925 cmd.append("--vendor_bootconfig")
1926 cmd.append(fn)
1927
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001928 ramdisk_fragment_imgs = []
1929 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1930 if os.access(fn, os.F_OK):
1931 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1932 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001933 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1934 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001935 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001936 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1937 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001938 # Use prebuilt image if found, else create ramdisk from supplied files.
1939 if os.access(fn, os.F_OK):
1940 ramdisk_fragment_pathname = fn
1941 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001942 ramdisk_fragment_root = os.path.join(
1943 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001944 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1945 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001946 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1947 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1948 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1949
Steve Mucklee1b10862019-07-10 10:49:37 -07001950 RunAndCheckOutput(cmd)
1951
1952 # AVB: if enabled, calculate and add hash.
1953 if info_dict.get("avb_enable") == "true":
1954 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08001955 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07001956 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08001957 "--partition_size", str(part_size), "--partition_name", partition_name]
1958 AppendAVBSigningArgs(cmd, partition_name)
1959 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07001960 if args and args.strip():
1961 cmd.extend(shlex.split(args))
1962 RunAndCheckOutput(cmd)
1963
1964 img.seek(os.SEEK_SET, 0)
1965 data = img.read()
1966
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001967 for f in ramdisk_fragment_imgs:
1968 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001969 ramdisk_img.close()
1970 img.close()
1971
1972 return data
1973
1974
1975def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1976 info_dict=None):
1977 """Return a File object with the desired vendor boot image.
1978
1979 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1980 the source files in 'unpack_dir'/'tree_subdir'."""
1981
1982 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1983 if os.path.exists(prebuilt_path):
1984 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1985 return File.FromLocalFile(name, prebuilt_path)
1986
1987 logger.info("building image from target_files %s...", tree_subdir)
1988
1989 if info_dict is None:
1990 info_dict = OPTIONS.info_dict
1991
Kelvin Zhang0876c412020-06-23 15:06:58 -04001992 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08001993 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
1994 if data:
1995 return File(name, data)
1996 return None
1997
1998
1999def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002000 info_dict=None):
Lucas Wei03230252022-04-18 16:00:40 +08002001 """Return a File object with the desired vendor kernel boot image.
2002
2003 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
2004 the source files in 'unpack_dir'/'tree_subdir'."""
2005
2006 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2007 if os.path.exists(prebuilt_path):
2008 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2009 return File.FromLocalFile(name, prebuilt_path)
2010
2011 logger.info("building image from target_files %s...", tree_subdir)
2012
2013 if info_dict is None:
2014 info_dict = OPTIONS.info_dict
2015
2016 data = _BuildVendorBootImage(
2017 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002018 if data:
2019 return File(name, data)
2020 return None
2021
2022
Narayan Kamatha07bf042017-08-14 14:49:21 +01002023def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002024 """Gunzips the given gzip compressed file to a given output file."""
2025 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002026 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002027 shutil.copyfileobj(in_file, out_file)
2028
2029
Tao Bao0ff15de2019-03-20 11:26:06 -07002030def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002031 """Unzips the archive to the given directory.
2032
2033 Args:
2034 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002035 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002036 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2037 archvie. Non-matching patterns will be filtered out. If there's no match
2038 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002039 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002040 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07002041 if patterns is not None:
2042 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04002043 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002044 names = input_zip.namelist()
2045 filtered = [
2046 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
2047
2048 # There isn't any matching files. Don't unzip anything.
2049 if not filtered:
2050 return
2051 cmd.extend(filtered)
2052
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002053 RunAndCheckOutput(cmd)
2054
2055
Daniel Norman78554ea2021-09-14 10:29:38 -07002056def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002057 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002058
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002059 Args:
2060 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2061 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2062
Daniel Norman78554ea2021-09-14 10:29:38 -07002063 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002064 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002065
Tao Bao1c830bf2017-12-25 10:43:47 -08002066 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002067 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002068 """
Doug Zongkereef39442009-04-02 12:14:19 -07002069
Tao Bao1c830bf2017-12-25 10:43:47 -08002070 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002071 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2072 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002073 UnzipToDir(m.group(1), tmp, patterns)
2074 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002075 filename = m.group(1)
2076 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002077 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002078
Tao Baodba59ee2018-01-09 13:21:02 -08002079 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002080
2081
Yifan Hong8a66a712019-04-04 15:37:57 -07002082def GetUserImage(which, tmpdir, input_zip,
2083 info_dict=None,
2084 allow_shared_blocks=None,
Yifan Hong8a66a712019-04-04 15:37:57 -07002085 reset_file_map=False):
2086 """Returns an Image object suitable for passing to BlockImageDiff.
2087
2088 This function loads the specified image from the given path. If the specified
2089 image is sparse, it also performs additional processing for OTA purpose. For
2090 example, it always adds block 0 to clobbered blocks list. It also detects
2091 files that cannot be reconstructed from the block list, for whom we should
2092 avoid applying imgdiff.
2093
2094 Args:
2095 which: The partition name.
2096 tmpdir: The directory that contains the prebuilt image and block map file.
2097 input_zip: The target-files ZIP archive.
2098 info_dict: The dict to be looked up for relevant info.
2099 allow_shared_blocks: If image is sparse, whether having shared blocks is
2100 allowed. If none, it is looked up from info_dict.
Yifan Hong8a66a712019-04-04 15:37:57 -07002101 reset_file_map: If true and image is sparse, reset file map before returning
2102 the image.
2103 Returns:
2104 A Image object. If it is a sparse image and reset_file_map is False, the
2105 image will have file_map info loaded.
2106 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002107 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002108 info_dict = LoadInfoDict(input_zip)
2109
2110 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002111 if info_dict.get(which + "_disable_sparse"):
2112 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002113
2114 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2115 # shared blocks (i.e. some blocks will show up in multiple files' block
2116 # list). We can only allocate such shared blocks to the first "owner", and
2117 # disable imgdiff for all later occurrences.
2118 if allow_shared_blocks is None:
2119 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2120
2121 if is_sparse:
hungweichencc9c05d2022-08-23 05:45:42 +00002122 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks)
Yifan Hong8a66a712019-04-04 15:37:57 -07002123 if reset_file_map:
2124 img.ResetFileMap()
2125 return img
hungweichencc9c05d2022-08-23 05:45:42 +00002126 return GetNonSparseImage(which, tmpdir)
Yifan Hong8a66a712019-04-04 15:37:57 -07002127
2128
hungweichencc9c05d2022-08-23 05:45:42 +00002129def GetNonSparseImage(which, tmpdir):
Yifan Hong8a66a712019-04-04 15:37:57 -07002130 """Returns a Image object suitable for passing to BlockImageDiff.
2131
2132 This function loads the specified non-sparse image from the given path.
2133
2134 Args:
2135 which: The partition name.
2136 tmpdir: The directory that contains the prebuilt image and block map file.
2137 Returns:
2138 A Image object.
2139 """
2140 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2141 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2142
2143 # The image and map files must have been created prior to calling
2144 # ota_from_target_files.py (since LMP).
2145 assert os.path.exists(path) and os.path.exists(mappath)
2146
hungweichencc9c05d2022-08-23 05:45:42 +00002147 return images.FileImage(path)
Tianjie Xu41976c72019-07-03 13:57:01 -07002148
Yifan Hong8a66a712019-04-04 15:37:57 -07002149
hungweichencc9c05d2022-08-23 05:45:42 +00002150def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks):
Tao Baoc765cca2018-01-31 17:32:40 -08002151 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2152
2153 This function loads the specified sparse image from the given path, and
2154 performs additional processing for OTA purpose. For example, it always adds
2155 block 0 to clobbered blocks list. It also detects files that cannot be
2156 reconstructed from the block list, for whom we should avoid applying imgdiff.
2157
2158 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002159 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002160 tmpdir: The directory that contains the prebuilt image and block map file.
2161 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002162 allow_shared_blocks: Whether having shared blocks is allowed.
Tao Baoc765cca2018-01-31 17:32:40 -08002163 Returns:
2164 A SparseImage object, with file_map info loaded.
2165 """
Tao Baoc765cca2018-01-31 17:32:40 -08002166 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2167 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2168
2169 # The image and map files must have been created prior to calling
2170 # ota_from_target_files.py (since LMP).
2171 assert os.path.exists(path) and os.path.exists(mappath)
2172
2173 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2174 # it to clobbered_blocks so that it will be written to the target
2175 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2176 clobbered_blocks = "0"
2177
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002178 image = sparse_img.SparseImage(
hungweichencc9c05d2022-08-23 05:45:42 +00002179 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks)
Tao Baoc765cca2018-01-31 17:32:40 -08002180
2181 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2182 # if they contain all zeros. We can't reconstruct such a file from its block
2183 # list. Tag such entries accordingly. (Bug: 65213616)
2184 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002185 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002186 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002187 continue
2188
Tom Cherryd14b8952018-08-09 14:26:00 -07002189 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2190 # filename listed in system.map may contain an additional leading slash
2191 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2192 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002193 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002194 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002195 arcname = entry.lstrip('/')
2196 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002197 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002198 else:
2199 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002200
2201 assert arcname in input_zip.namelist(), \
2202 "Failed to find the ZIP entry for {}".format(entry)
2203
Tao Baoc765cca2018-01-31 17:32:40 -08002204 info = input_zip.getinfo(arcname)
2205 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002206
2207 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002208 # image, check the original block list to determine its completeness. Note
2209 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002210 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002211 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002212
Tao Baoc765cca2018-01-31 17:32:40 -08002213 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2214 ranges.extra['incomplete'] = True
2215
2216 return image
2217
2218
Doug Zongkereef39442009-04-02 12:14:19 -07002219def GetKeyPasswords(keylist):
2220 """Given a list of keys, prompt the user to enter passwords for
2221 those which require them. Return a {key: password} dict. password
2222 will be None if the key has no password."""
2223
Doug Zongker8ce7c252009-05-22 13:34:54 -07002224 no_passwords = []
2225 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002226 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002227 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002228
2229 # sorted() can't compare strings to None, so convert Nones to strings
2230 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002231 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002232 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002233 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002234 continue
2235
T.R. Fullhart37e10522013-03-18 10:31:26 -07002236 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002237 "-inform", "DER", "-nocrypt"],
2238 stdin=devnull.fileno(),
2239 stdout=devnull.fileno(),
2240 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002241 p.communicate()
2242 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002243 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002244 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002245 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002246 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2247 "-inform", "DER", "-passin", "pass:"],
2248 stdin=devnull.fileno(),
2249 stdout=devnull.fileno(),
2250 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002251 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002252 if p.returncode == 0:
2253 # Encrypted key with empty string as password.
2254 key_passwords[k] = ''
2255 elif stderr.startswith('Error decrypting key'):
2256 # Definitely encrypted key.
2257 # It would have said "Error reading key" if it didn't parse correctly.
2258 need_passwords.append(k)
2259 else:
2260 # Potentially, a type of key that openssl doesn't understand.
2261 # We'll let the routines in signapk.jar handle it.
2262 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002263 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002264
T.R. Fullhart37e10522013-03-18 10:31:26 -07002265 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002266 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002267 return key_passwords
2268
2269
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002270def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002271 """Gets the minSdkVersion declared in the APK.
2272
Martin Stjernholm58472e82022-01-07 22:08:47 +00002273 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2274 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002275
2276 Args:
2277 apk_name: The APK filename.
2278
2279 Returns:
2280 The parsed SDK version string.
2281
2282 Raises:
2283 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002284 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002285 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002286 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002287 stderr=subprocess.PIPE)
2288 stdoutdata, stderrdata = proc.communicate()
2289 if proc.returncode != 0:
2290 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002291 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2292 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002293
Tao Baof47bf0f2018-03-21 23:28:51 -07002294 for line in stdoutdata.split("\n"):
2295 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002296 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2297 if m:
2298 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002299 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002300
2301
2302def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002303 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002304
Tao Baof47bf0f2018-03-21 23:28:51 -07002305 If minSdkVersion is set to a codename, it is translated to a number using the
2306 provided map.
2307
2308 Args:
2309 apk_name: The APK filename.
2310
2311 Returns:
2312 The parsed SDK version number.
2313
2314 Raises:
2315 ExternalError: On failing to get the min SDK version number.
2316 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002317 version = GetMinSdkVersion(apk_name)
2318 try:
2319 return int(version)
2320 except ValueError:
2321 # Not a decimal number. Codename?
2322 if version in codename_to_api_level_map:
2323 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002324 raise ExternalError(
2325 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2326 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002327
2328
2329def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002330 codename_to_api_level_map=None, whole_file=False,
2331 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002332 """Sign the input_name zip/jar/apk, producing output_name. Use the
2333 given key and password (the latter may be None if the key does not
2334 have a password.
2335
Doug Zongker951495f2009-08-14 12:44:19 -07002336 If whole_file is true, use the "-w" option to SignApk to embed a
2337 signature that covers the whole file in the archive comment of the
2338 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002339
2340 min_api_level is the API Level (int) of the oldest platform this file may end
2341 up on. If not specified for an APK, the API Level is obtained by interpreting
2342 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2343
2344 codename_to_api_level_map is needed to translate the codename which may be
2345 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002346
2347 Caller may optionally specify extra args to be passed to SignApk, which
2348 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002349 """
Tao Bao76def242017-11-21 09:25:31 -08002350 if codename_to_api_level_map is None:
2351 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002352 if extra_signapk_args is None:
2353 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002354
Alex Klyubin9667b182015-12-10 13:38:50 -08002355 java_library_path = os.path.join(
2356 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2357
Tao Baoe95540e2016-11-08 12:08:53 -08002358 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2359 ["-Djava.library.path=" + java_library_path,
2360 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002361 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002362 if whole_file:
2363 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002364
2365 min_sdk_version = min_api_level
2366 if min_sdk_version is None:
2367 if not whole_file:
2368 min_sdk_version = GetMinSdkVersionInt(
2369 input_name, codename_to_api_level_map)
2370 if min_sdk_version is not None:
2371 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2372
T.R. Fullhart37e10522013-03-18 10:31:26 -07002373 cmd.extend([key + OPTIONS.public_key_suffix,
2374 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002375 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002376
Tao Bao73dd4f42018-10-04 16:25:33 -07002377 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002378 if password is not None:
2379 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002380 stdoutdata, _ = proc.communicate(password)
2381 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002382 raise ExternalError(
Kelvin Zhang197772f2022-04-26 15:15:11 -07002383 "Failed to run {}: return code {}:\n{}".format(cmd,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002384 proc.returncode, stdoutdata))
2385
Doug Zongkereef39442009-04-02 12:14:19 -07002386
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002387def SignSePolicy(sepolicy, key, password):
2388 """Sign the sepolicy zip, producing an fsverity .fsv_sig and
2389 an RSA .sig signature files.
2390 """
2391
2392 if OPTIONS.sign_sepolicy_path is None:
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002393 logger.info("No sign_sepolicy_path specified, %s was not signed", sepolicy)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002394 return False
2395
2396 java_library_path = os.path.join(
2397 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2398
2399 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
Kelvin Zhangf294c872022-10-06 14:21:36 -07002400 ["-Djava.library.path=" + java_library_path,
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002401 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.sign_sepolicy_path)] +
Kelvin Zhangf294c872022-10-06 14:21:36 -07002402 OPTIONS.extra_sign_sepolicy_args)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002403
2404 cmd.extend([key + OPTIONS.public_key_suffix,
2405 key + OPTIONS.private_key_suffix,
Melisa Carranza Zuniga7ef13792022-08-23 19:09:12 +02002406 sepolicy, os.path.dirname(sepolicy)])
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002407
2408 proc = Run(cmd, stdin=subprocess.PIPE)
2409 if password is not None:
2410 password += "\n"
2411 stdoutdata, _ = proc.communicate(password)
2412 if proc.returncode != 0:
2413 raise ExternalError(
2414 "Failed to run sign sepolicy: return code {}:\n{}".format(
2415 proc.returncode, stdoutdata))
2416 return True
Doug Zongkereef39442009-04-02 12:14:19 -07002417
Kelvin Zhangf294c872022-10-06 14:21:36 -07002418
Doug Zongker37974732010-09-16 17:44:38 -07002419def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002420 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002421
Tao Bao9dd909e2017-11-14 11:27:32 -08002422 For non-AVB images, raise exception if the data is too big. Print a warning
2423 if the data is nearing the maximum size.
2424
2425 For AVB images, the actual image size should be identical to the limit.
2426
2427 Args:
2428 data: A string that contains all the data for the partition.
2429 target: The partition name. The ".img" suffix is optional.
2430 info_dict: The dict to be looked up for relevant info.
2431 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002432 if target.endswith(".img"):
2433 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002434 mount_point = "/" + target
2435
Ying Wangf8824af2014-06-03 14:07:27 -07002436 fs_type = None
2437 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002438 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002439 if mount_point == "/userdata":
2440 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002441 p = info_dict["fstab"][mount_point]
2442 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002443 device = p.device
2444 if "/" in device:
2445 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002446 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002447 if not fs_type or not limit:
2448 return
Doug Zongkereef39442009-04-02 12:14:19 -07002449
Andrew Boie0f9aec82012-02-14 09:32:52 -08002450 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002451 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2452 # path.
2453 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2454 if size != limit:
2455 raise ExternalError(
2456 "Mismatching image size for %s: expected %d actual %d" % (
2457 target, limit, size))
2458 else:
2459 pct = float(size) * 100.0 / limit
2460 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2461 if pct >= 99.0:
2462 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002463
2464 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002465 logger.warning("\n WARNING: %s\n", msg)
2466 else:
2467 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002468
2469
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002470def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002471 """Parses the APK certs info from a given target-files zip.
2472
2473 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2474 tuple with the following elements: (1) a dictionary that maps packages to
2475 certs (based on the "certificate" and "private_key" attributes in the file;
2476 (2) a string representing the extension of compressed APKs in the target files
2477 (e.g ".gz", ".bro").
2478
2479 Args:
2480 tf_zip: The input target_files ZipFile (already open).
2481
2482 Returns:
2483 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2484 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2485 no compressed APKs.
2486 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002487 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002488 compressed_extension = None
2489
Tao Bao0f990332017-09-08 19:02:54 -07002490 # META/apkcerts.txt contains the info for _all_ the packages known at build
2491 # time. Filter out the ones that are not installed.
2492 installed_files = set()
2493 for name in tf_zip.namelist():
2494 basename = os.path.basename(name)
2495 if basename:
2496 installed_files.add(basename)
2497
Tao Baoda30cfa2017-12-01 16:19:46 -08002498 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002499 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002500 if not line:
2501 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002502 m = re.match(
2503 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002504 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2505 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002506 line)
2507 if not m:
2508 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002509
Tao Bao818ddf52018-01-05 11:17:34 -08002510 matches = m.groupdict()
2511 cert = matches["CERT"]
2512 privkey = matches["PRIVKEY"]
2513 name = matches["NAME"]
2514 this_compressed_extension = matches["COMPRESSED"]
2515
2516 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2517 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2518 if cert in SPECIAL_CERT_STRINGS and not privkey:
2519 certmap[name] = cert
2520 elif (cert.endswith(OPTIONS.public_key_suffix) and
2521 privkey.endswith(OPTIONS.private_key_suffix) and
2522 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2523 certmap[name] = cert[:-public_key_suffix_len]
2524 else:
2525 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2526
2527 if not this_compressed_extension:
2528 continue
2529
2530 # Only count the installed files.
2531 filename = name + '.' + this_compressed_extension
2532 if filename not in installed_files:
2533 continue
2534
2535 # Make sure that all the values in the compression map have the same
2536 # extension. We don't support multiple compression methods in the same
2537 # system image.
2538 if compressed_extension:
2539 if this_compressed_extension != compressed_extension:
2540 raise ValueError(
2541 "Multiple compressed extensions: {} vs {}".format(
2542 compressed_extension, this_compressed_extension))
2543 else:
2544 compressed_extension = this_compressed_extension
2545
2546 return (certmap,
2547 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002548
2549
Doug Zongkereef39442009-04-02 12:14:19 -07002550COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002551Global options
2552
2553 -p (--path) <dir>
2554 Prepend <dir>/bin to the list of places to search for binaries run by this
2555 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002556
Doug Zongker05d3dea2009-06-22 11:32:31 -07002557 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002558 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002559
Tao Bao30df8b42018-04-23 15:32:53 -07002560 -x (--extra) <key=value>
2561 Add a key/value pair to the 'extras' dict, which device-specific extension
2562 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002563
Doug Zongkereef39442009-04-02 12:14:19 -07002564 -v (--verbose)
2565 Show command lines being executed.
2566
2567 -h (--help)
2568 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002569
2570 --logfile <file>
2571 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002572"""
2573
Kelvin Zhang0876c412020-06-23 15:06:58 -04002574
Doug Zongkereef39442009-04-02 12:14:19 -07002575def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002576 print(docstring.rstrip("\n"))
2577 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002578
2579
2580def ParseOptions(argv,
2581 docstring,
2582 extra_opts="", extra_long_opts=(),
2583 extra_option_handler=None):
2584 """Parse the options in argv and return any arguments that aren't
2585 flags. docstring is the calling module's docstring, to be displayed
2586 for errors and -h. extra_opts and extra_long_opts are for flags
2587 defined by the caller, which are processed by passing them to
2588 extra_option_handler."""
2589
2590 try:
2591 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002592 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002593 ["help", "verbose", "path=", "signapk_path=",
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002594 "signapk_shared_library_path=", "extra_signapk_args=",
2595 "sign_sepolicy_path=", "extra_sign_sepolicy_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002596 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002597 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2598 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002599 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002600 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002601 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002602 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002603 sys.exit(2)
2604
Doug Zongkereef39442009-04-02 12:14:19 -07002605 for o, a in opts:
2606 if o in ("-h", "--help"):
2607 Usage(docstring)
2608 sys.exit()
2609 elif o in ("-v", "--verbose"):
2610 OPTIONS.verbose = True
2611 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002612 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002613 elif o in ("--signapk_path",):
2614 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002615 elif o in ("--signapk_shared_library_path",):
2616 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002617 elif o in ("--extra_signapk_args",):
2618 OPTIONS.extra_signapk_args = shlex.split(a)
Melisa Carranza Zunigae0a977a2022-06-16 18:44:27 +02002619 elif o in ("--sign_sepolicy_path",):
2620 OPTIONS.sign_sepolicy_path = a
2621 elif o in ("--extra_sign_sepolicy_args",):
2622 OPTIONS.extra_sign_sepolicy_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002623 elif o in ("--aapt2_path",):
2624 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002625 elif o in ("--java_path",):
2626 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002627 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002628 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002629 elif o in ("--android_jar_path",):
2630 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002631 elif o in ("--public_key_suffix",):
2632 OPTIONS.public_key_suffix = a
2633 elif o in ("--private_key_suffix",):
2634 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002635 elif o in ("--boot_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002636 raise ValueError(
2637 "--boot_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002638 elif o in ("--boot_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002639 raise ValueError(
2640 "--boot_signer_args is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002641 elif o in ("--verity_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002642 raise ValueError(
2643 "--verity_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002644 elif o in ("--verity_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002645 raise ValueError(
2646 "--verity_signer_args is no longer supported, please switch to AVB")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002647 elif o in ("-s", "--device_specific"):
2648 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002649 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002650 key, value = a.split("=", 1)
2651 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002652 elif o in ("--logfile",):
2653 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002654 else:
2655 if extra_option_handler is None or not extra_option_handler(o, a):
2656 assert False, "unknown option \"%s\"" % (o,)
2657
Doug Zongker85448772014-09-09 14:59:20 -07002658 if OPTIONS.search_path:
2659 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2660 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002661
2662 return args
2663
2664
Tao Bao4c851b12016-09-19 13:54:38 -07002665def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002666 """Make a temp file and add it to the list of things to be deleted
2667 when Cleanup() is called. Return the filename."""
2668 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2669 os.close(fd)
2670 OPTIONS.tempfiles.append(fn)
2671 return fn
2672
2673
Tao Bao1c830bf2017-12-25 10:43:47 -08002674def MakeTempDir(prefix='tmp', suffix=''):
2675 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2676
2677 Returns:
2678 The absolute pathname of the new directory.
2679 """
2680 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2681 OPTIONS.tempfiles.append(dir_name)
2682 return dir_name
2683
2684
Doug Zongkereef39442009-04-02 12:14:19 -07002685def Cleanup():
2686 for i in OPTIONS.tempfiles:
2687 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002688 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002689 else:
2690 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002691 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002692
2693
2694class PasswordManager(object):
2695 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002696 self.editor = os.getenv("EDITOR")
2697 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002698
2699 def GetPasswords(self, items):
2700 """Get passwords corresponding to each string in 'items',
2701 returning a dict. (The dict may have keys in addition to the
2702 values in 'items'.)
2703
2704 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2705 user edit that file to add more needed passwords. If no editor is
2706 available, or $ANDROID_PW_FILE isn't define, prompts the user
2707 interactively in the ordinary way.
2708 """
2709
2710 current = self.ReadFile()
2711
2712 first = True
2713 while True:
2714 missing = []
2715 for i in items:
2716 if i not in current or not current[i]:
2717 missing.append(i)
2718 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002719 if not missing:
2720 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002721
2722 for i in missing:
2723 current[i] = ""
2724
2725 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002726 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002727 if sys.version_info[0] >= 3:
2728 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002729 answer = raw_input("try to edit again? [y]> ").strip()
2730 if answer and answer[0] not in 'yY':
2731 raise RuntimeError("key passwords unavailable")
2732 first = False
2733
2734 current = self.UpdateAndReadFile(current)
2735
Kelvin Zhang0876c412020-06-23 15:06:58 -04002736 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002737 """Prompt the user to enter a value (password) for each key in
2738 'current' whose value is fales. Returns a new dict with all the
2739 values.
2740 """
2741 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002742 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002743 if v:
2744 result[k] = v
2745 else:
2746 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002747 result[k] = getpass.getpass(
2748 "Enter password for %s key> " % k).strip()
2749 if result[k]:
2750 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002751 return result
2752
2753 def UpdateAndReadFile(self, current):
2754 if not self.editor or not self.pwfile:
2755 return self.PromptResult(current)
2756
2757 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002758 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002759 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2760 f.write("# (Additional spaces are harmless.)\n\n")
2761
2762 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002763 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002764 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002765 f.write("[[[ %s ]]] %s\n" % (v, k))
2766 if not v and first_line is None:
2767 # position cursor on first line with no password.
2768 first_line = i + 4
2769 f.close()
2770
Tao Bao986ee862018-10-04 15:46:16 -07002771 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002772
2773 return self.ReadFile()
2774
2775 def ReadFile(self):
2776 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002777 if self.pwfile is None:
2778 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002779 try:
2780 f = open(self.pwfile, "r")
2781 for line in f:
2782 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002783 if not line or line[0] == '#':
2784 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002785 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2786 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002787 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002788 else:
2789 result[m.group(2)] = m.group(1)
2790 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002791 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002792 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002793 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002794 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002795
2796
Dan Albert8e0178d2015-01-27 15:53:15 -08002797def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2798 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002799
Dan Albert8e0178d2015-01-27 15:53:15 -08002800 if compress_type is None:
2801 compress_type = zip_file.compression
2802 if arcname is None:
2803 arcname = filename
2804
2805 saved_stat = os.stat(filename)
2806
2807 try:
2808 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2809 # file to be zipped and reset it when we're done.
2810 os.chmod(filename, perms)
2811
2812 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002813 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2814 # intentional. zip stores datetimes in local time without a time zone
2815 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2816 # in the zip archive.
2817 local_epoch = datetime.datetime.fromtimestamp(0)
2818 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002819 os.utime(filename, (timestamp, timestamp))
2820
2821 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2822 finally:
2823 os.chmod(filename, saved_stat.st_mode)
2824 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
Dan Albert8e0178d2015-01-27 15:53:15 -08002825
2826
Tao Bao58c1b962015-05-20 09:32:18 -07002827def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002828 compress_type=None):
2829 """Wrap zipfile.writestr() function to work around the zip64 limit.
2830
Kelvin Zhang37a42902022-10-26 12:49:03 -07002831 Python's zip implementation won't allow writing a string
Tao Baof3282b42015-04-01 11:21:55 -07002832 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2833 when calling crc32(bytes).
2834
2835 But it still works fine to write a shorter string into a large zip file.
2836 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2837 when we know the string won't be too long.
2838 """
2839
Tao Baof3282b42015-04-01 11:21:55 -07002840 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2841 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002842 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002843 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002844 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002845 else:
Tao Baof3282b42015-04-01 11:21:55 -07002846 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002847 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2848 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2849 # such a case (since
2850 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2851 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2852 # permission bits. We follow the logic in Python 3 to get consistent
2853 # behavior between using the two versions.
2854 if not zinfo.external_attr:
2855 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002856
2857 # If compress_type is given, it overrides the value in zinfo.
2858 if compress_type is not None:
2859 zinfo.compress_type = compress_type
2860
Tao Bao58c1b962015-05-20 09:32:18 -07002861 # If perms is given, it has a priority.
2862 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002863 # If perms doesn't set the file type, mark it as a regular file.
2864 if perms & 0o770000 == 0:
2865 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002866 zinfo.external_attr = perms << 16
2867
Tao Baof3282b42015-04-01 11:21:55 -07002868 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002869 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2870
Dan Albert8b72aef2015-03-23 19:13:21 -07002871 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002872
2873
Kelvin Zhang1caead02022-09-23 10:06:03 -07002874def ZipDelete(zip_filename, entries, force=False):
Tao Bao89d7ab22017-12-14 17:05:33 -08002875 """Deletes entries from a ZIP file.
2876
Tao Bao89d7ab22017-12-14 17:05:33 -08002877 Args:
2878 zip_filename: The name of the ZIP file.
2879 entries: The name of the entry, or the list of names to be deleted.
Tao Bao89d7ab22017-12-14 17:05:33 -08002880 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002881 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002882 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002883 # If list is empty, nothing to do
2884 if not entries:
2885 return
Wei Li8895f9e2022-10-10 17:13:17 -07002886
2887 with zipfile.ZipFile(zip_filename, 'r') as zin:
2888 if not force and len(set(zin.namelist()).intersection(entries)) == 0:
2889 raise ExternalError(
2890 "Failed to delete zip entries, name not matched: %s" % entries)
2891
2892 fd, new_zipfile = tempfile.mkstemp(dir=os.path.dirname(zip_filename))
2893 os.close(fd)
2894
2895 with zipfile.ZipFile(new_zipfile, 'w') as zout:
2896 for item in zin.infolist():
2897 if item.filename in entries:
2898 continue
2899 buffer = zin.read(item.filename)
2900 zout.writestr(item, buffer)
2901
2902 os.replace(new_zipfile, zip_filename)
Tao Bao89d7ab22017-12-14 17:05:33 -08002903
2904
Doug Zongker05d3dea2009-06-22 11:32:31 -07002905class DeviceSpecificParams(object):
2906 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002907
Doug Zongker05d3dea2009-06-22 11:32:31 -07002908 def __init__(self, **kwargs):
2909 """Keyword arguments to the constructor become attributes of this
2910 object, which is passed to all functions in the device-specific
2911 module."""
Tao Bao38884282019-07-10 22:20:56 -07002912 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002913 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002914 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002915
2916 if self.module is None:
2917 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002918 if not path:
2919 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002920 try:
2921 if os.path.isdir(path):
2922 info = imp.find_module("releasetools", [path])
2923 else:
2924 d, f = os.path.split(path)
2925 b, x = os.path.splitext(f)
2926 if x == ".py":
2927 f = b
2928 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002929 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002930 self.module = imp.load_module("device_specific", *info)
2931 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002932 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002933
2934 def _DoCall(self, function_name, *args, **kwargs):
2935 """Call the named function in the device-specific module, passing
2936 the given args and kwargs. The first argument to the call will be
2937 the DeviceSpecific object itself. If there is no module, or the
2938 module does not define the function, return the value of the
2939 'default' kwarg (which itself defaults to None)."""
2940 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002941 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002942 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2943
2944 def FullOTA_Assertions(self):
2945 """Called after emitting the block of assertions at the top of a
2946 full OTA package. Implementations can add whatever additional
2947 assertions they like."""
2948 return self._DoCall("FullOTA_Assertions")
2949
Doug Zongkere5ff5902012-01-17 10:55:37 -08002950 def FullOTA_InstallBegin(self):
2951 """Called at the start of full OTA installation."""
2952 return self._DoCall("FullOTA_InstallBegin")
2953
Yifan Hong10c530d2018-12-27 17:34:18 -08002954 def FullOTA_GetBlockDifferences(self):
2955 """Called during full OTA installation and verification.
2956 Implementation should return a list of BlockDifference objects describing
2957 the update on each additional partitions.
2958 """
2959 return self._DoCall("FullOTA_GetBlockDifferences")
2960
Doug Zongker05d3dea2009-06-22 11:32:31 -07002961 def FullOTA_InstallEnd(self):
2962 """Called at the end of full OTA installation; typically this is
2963 used to install the image for the device's baseband processor."""
2964 return self._DoCall("FullOTA_InstallEnd")
2965
2966 def IncrementalOTA_Assertions(self):
2967 """Called after emitting the block of assertions at the top of an
2968 incremental OTA package. Implementations can add whatever
2969 additional assertions they like."""
2970 return self._DoCall("IncrementalOTA_Assertions")
2971
Doug Zongkere5ff5902012-01-17 10:55:37 -08002972 def IncrementalOTA_VerifyBegin(self):
2973 """Called at the start of the verification phase of incremental
2974 OTA installation; additional checks can be placed here to abort
2975 the script before any changes are made."""
2976 return self._DoCall("IncrementalOTA_VerifyBegin")
2977
Doug Zongker05d3dea2009-06-22 11:32:31 -07002978 def IncrementalOTA_VerifyEnd(self):
2979 """Called at the end of the verification phase of incremental OTA
2980 installation; additional checks can be placed here to abort the
2981 script before any changes are made."""
2982 return self._DoCall("IncrementalOTA_VerifyEnd")
2983
Doug Zongkere5ff5902012-01-17 10:55:37 -08002984 def IncrementalOTA_InstallBegin(self):
2985 """Called at the start of incremental OTA installation (after
2986 verification is complete)."""
2987 return self._DoCall("IncrementalOTA_InstallBegin")
2988
Yifan Hong10c530d2018-12-27 17:34:18 -08002989 def IncrementalOTA_GetBlockDifferences(self):
2990 """Called during incremental OTA installation and verification.
2991 Implementation should return a list of BlockDifference objects describing
2992 the update on each additional partitions.
2993 """
2994 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2995
Doug Zongker05d3dea2009-06-22 11:32:31 -07002996 def IncrementalOTA_InstallEnd(self):
2997 """Called at the end of incremental OTA installation; typically
2998 this is used to install the image for the device's baseband
2999 processor."""
3000 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003001
Tao Bao9bc6bb22015-11-09 16:58:28 -08003002 def VerifyOTA_Assertions(self):
3003 return self._DoCall("VerifyOTA_Assertions")
3004
Tao Bao76def242017-11-21 09:25:31 -08003005
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003006class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003007 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003008 self.name = name
3009 self.data = data
3010 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003011 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003012 self.sha1 = sha1(data).hexdigest()
3013
3014 @classmethod
3015 def FromLocalFile(cls, name, diskname):
3016 f = open(diskname, "rb")
3017 data = f.read()
3018 f.close()
3019 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003020
3021 def WriteToTemp(self):
3022 t = tempfile.NamedTemporaryFile()
3023 t.write(self.data)
3024 t.flush()
3025 return t
3026
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003027 def WriteToDir(self, d):
3028 with open(os.path.join(d, self.name), "wb") as fp:
3029 fp.write(self.data)
3030
Geremy Condra36bd3652014-02-06 19:45:10 -08003031 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003032 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003033
Tao Bao76def242017-11-21 09:25:31 -08003034
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003035DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04003036 ".gz": "imgdiff",
3037 ".zip": ["imgdiff", "-z"],
3038 ".jar": ["imgdiff", "-z"],
3039 ".apk": ["imgdiff", "-z"],
3040 ".img": "imgdiff",
3041}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003042
Tao Bao76def242017-11-21 09:25:31 -08003043
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003044class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07003045 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003046 self.tf = tf
3047 self.sf = sf
3048 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07003049 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003050
3051 def ComputePatch(self):
3052 """Compute the patch (as a string of data) needed to turn sf into
3053 tf. Returns the same tuple as GetPatch()."""
3054
3055 tf = self.tf
3056 sf = self.sf
3057
Doug Zongker24cd2802012-08-14 16:36:15 -07003058 if self.diff_program:
3059 diff_program = self.diff_program
3060 else:
3061 ext = os.path.splitext(tf.name)[1]
3062 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003063
3064 ttemp = tf.WriteToTemp()
3065 stemp = sf.WriteToTemp()
3066
3067 ext = os.path.splitext(tf.name)[1]
3068
3069 try:
3070 ptemp = tempfile.NamedTemporaryFile()
3071 if isinstance(diff_program, list):
3072 cmd = copy.copy(diff_program)
3073 else:
3074 cmd = [diff_program]
3075 cmd.append(stemp.name)
3076 cmd.append(ttemp.name)
3077 cmd.append(ptemp.name)
3078 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003079 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003080
Doug Zongkerf8340082014-08-05 10:39:37 -07003081 def run():
3082 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003083 if e:
3084 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003085 th = threading.Thread(target=run)
3086 th.start()
3087 th.join(timeout=300) # 5 mins
3088 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003089 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003090 p.terminate()
3091 th.join(5)
3092 if th.is_alive():
3093 p.kill()
3094 th.join()
3095
Tianjie Xua2a9f992018-01-05 15:15:54 -08003096 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003097 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003098 self.patch = None
3099 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003100 diff = ptemp.read()
3101 finally:
3102 ptemp.close()
3103 stemp.close()
3104 ttemp.close()
3105
3106 self.patch = diff
3107 return self.tf, self.sf, self.patch
3108
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003109 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003110 """Returns a tuple of (target_file, source_file, patch_data).
3111
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003112 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003113 computing the patch failed.
3114 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003115 return self.tf, self.sf, self.patch
3116
3117
3118def ComputeDifferences(diffs):
3119 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003120 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003121
3122 # Do the largest files first, to try and reduce the long-pole effect.
3123 by_size = [(i.tf.size, i) for i in diffs]
3124 by_size.sort(reverse=True)
3125 by_size = [i[1] for i in by_size]
3126
3127 lock = threading.Lock()
3128 diff_iter = iter(by_size) # accessed under lock
3129
3130 def worker():
3131 try:
3132 lock.acquire()
3133 for d in diff_iter:
3134 lock.release()
3135 start = time.time()
3136 d.ComputePatch()
3137 dur = time.time() - start
3138 lock.acquire()
3139
3140 tf, sf, patch = d.GetPatch()
3141 if sf.name == tf.name:
3142 name = tf.name
3143 else:
3144 name = "%s (%s)" % (tf.name, sf.name)
3145 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003146 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003147 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003148 logger.info(
3149 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3150 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003151 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003152 except Exception:
3153 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003154 raise
3155
3156 # start worker threads; wait for them all to finish.
3157 threads = [threading.Thread(target=worker)
3158 for i in range(OPTIONS.worker_threads)]
3159 for th in threads:
3160 th.start()
3161 while threads:
3162 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003163
3164
Dan Albert8b72aef2015-03-23 19:13:21 -07003165class BlockDifference(object):
3166 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003167 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003168 self.tgt = tgt
3169 self.src = src
3170 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003171 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003172 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003173
Tao Baodd2a5892015-03-12 12:32:37 -07003174 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003175 version = max(
3176 int(i) for i in
3177 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003178 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003179 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003180
Tianjie Xu41976c72019-07-03 13:57:01 -07003181 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3182 version=self.version,
3183 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003184 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003185 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003186 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003187 self.touched_src_ranges = b.touched_src_ranges
3188 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003189
Yifan Hong10c530d2018-12-27 17:34:18 -08003190 # On devices with dynamic partitions, for new partitions,
3191 # src is None but OPTIONS.source_info_dict is not.
3192 if OPTIONS.source_info_dict is None:
3193 is_dynamic_build = OPTIONS.info_dict.get(
3194 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003195 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003196 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003197 is_dynamic_build = OPTIONS.source_info_dict.get(
3198 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003199 is_dynamic_source = partition in shlex.split(
3200 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003201
Yifan Hongbb2658d2019-01-25 12:30:58 -08003202 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003203 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3204
Yifan Hongbb2658d2019-01-25 12:30:58 -08003205 # For dynamic partitions builds, check partition list in both source
3206 # and target build because new partitions may be added, and existing
3207 # partitions may be removed.
3208 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3209
Yifan Hong10c530d2018-12-27 17:34:18 -08003210 if is_dynamic:
3211 self.device = 'map_partition("%s")' % partition
3212 else:
3213 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003214 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3215 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003216 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003217 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3218 OPTIONS.source_info_dict)
3219 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003220
Tao Baod8d14be2016-02-04 14:26:02 -08003221 @property
3222 def required_cache(self):
3223 return self._required_cache
3224
Tao Bao76def242017-11-21 09:25:31 -08003225 def WriteScript(self, script, output_zip, progress=None,
3226 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003227 if not self.src:
3228 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003229 script.Print("Patching %s image unconditionally..." % (self.partition,))
3230 else:
3231 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003232
Dan Albert8b72aef2015-03-23 19:13:21 -07003233 if progress:
3234 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003235 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003236
3237 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003238 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003239
Tao Bao9bc6bb22015-11-09 16:58:28 -08003240 def WriteStrictVerifyScript(self, script):
3241 """Verify all the blocks in the care_map, including clobbered blocks.
3242
3243 This differs from the WriteVerifyScript() function: a) it prints different
3244 error messages; b) it doesn't allow half-way updated images to pass the
3245 verification."""
3246
3247 partition = self.partition
3248 script.Print("Verifying %s..." % (partition,))
3249 ranges = self.tgt.care_map
3250 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003251 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003252 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3253 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003254 self.device, ranges_str,
3255 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003256 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003257 script.AppendExtra("")
3258
Tao Baod522bdc2016-04-12 15:53:16 -07003259 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003260 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003261
3262 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003263 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003264 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003265
3266 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003267 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003268 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003269 ranges = self.touched_src_ranges
3270 expected_sha1 = self.touched_src_sha1
3271 else:
3272 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3273 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003274
3275 # No blocks to be checked, skipping.
3276 if not ranges:
3277 return
3278
Tao Bao5ece99d2015-05-12 11:42:31 -07003279 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003280 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003281 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003282 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3283 '"%s.patch.dat")) then' % (
3284 self.device, ranges_str, expected_sha1,
3285 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003286 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003287 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003288
Tianjie Xufc3422a2015-12-15 11:53:59 -08003289 if self.version >= 4:
3290
3291 # Bug: 21124327
3292 # When generating incrementals for the system and vendor partitions in
3293 # version 4 or newer, explicitly check the first block (which contains
3294 # the superblock) of the partition to see if it's what we expect. If
3295 # this check fails, give an explicit log message about the partition
3296 # having been remounted R/W (the most likely explanation).
3297 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003298 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003299
3300 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003301 if partition == "system":
3302 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3303 else:
3304 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003305 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003306 'ifelse (block_image_recover({device}, "{ranges}") && '
3307 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003308 'package_extract_file("{partition}.transfer.list"), '
3309 '"{partition}.new.dat", "{partition}.patch.dat"), '
3310 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003311 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003312 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003313 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003314
Tao Baodd2a5892015-03-12 12:32:37 -07003315 # Abort the OTA update. Note that the incremental OTA cannot be applied
3316 # even if it may match the checksum of the target partition.
3317 # a) If version < 3, operations like move and erase will make changes
3318 # unconditionally and damage the partition.
3319 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003320 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003321 if partition == "system":
3322 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3323 else:
3324 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3325 script.AppendExtra((
3326 'abort("E%d: %s partition has unexpected contents");\n'
3327 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003328
Yifan Hong10c530d2018-12-27 17:34:18 -08003329 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003330 partition = self.partition
3331 script.Print('Verifying the updated %s image...' % (partition,))
3332 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3333 ranges = self.tgt.care_map
3334 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003335 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003336 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003337 self.device, ranges_str,
3338 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003339
3340 # Bug: 20881595
3341 # Verify that extended blocks are really zeroed out.
3342 if self.tgt.extended:
3343 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003344 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003345 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003346 self.device, ranges_str,
3347 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003348 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003349 if partition == "system":
3350 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3351 else:
3352 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003353 script.AppendExtra(
3354 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003355 ' abort("E%d: %s partition has unexpected non-zero contents after '
3356 'OTA update");\n'
3357 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003358 else:
3359 script.Print('Verified the updated %s image.' % (partition,))
3360
Tianjie Xu209db462016-05-24 17:34:52 -07003361 if partition == "system":
3362 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3363 else:
3364 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3365
Tao Bao5fcaaef2015-06-01 13:40:49 -07003366 script.AppendExtra(
3367 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003368 ' abort("E%d: %s partition has unexpected contents after OTA '
3369 'update");\n'
3370 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003371
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003372 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003373 ZipWrite(output_zip,
3374 '{}.transfer.list'.format(self.path),
3375 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003376
Tao Bao76def242017-11-21 09:25:31 -08003377 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3378 # its size. Quailty 9 almost triples the compression time but doesn't
3379 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003380 # zip | brotli(quality 6) | brotli(quality 9)
3381 # compressed_size: 942M | 869M (~8% reduced) | 854M
3382 # compression_time: 75s | 265s | 719s
3383 # decompression_time: 15s | 25s | 25s
3384
3385 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003386 brotli_cmd = ['brotli', '--quality=6',
3387 '--output={}.new.dat.br'.format(self.path),
3388 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003389 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003390 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003391
3392 new_data_name = '{}.new.dat.br'.format(self.partition)
3393 ZipWrite(output_zip,
3394 '{}.new.dat.br'.format(self.path),
3395 new_data_name,
3396 compress_type=zipfile.ZIP_STORED)
3397 else:
3398 new_data_name = '{}.new.dat'.format(self.partition)
3399 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3400
Dan Albert8e0178d2015-01-27 15:53:15 -08003401 ZipWrite(output_zip,
3402 '{}.patch.dat'.format(self.path),
3403 '{}.patch.dat'.format(self.partition),
3404 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003405
Tianjie Xu209db462016-05-24 17:34:52 -07003406 if self.partition == "system":
3407 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3408 else:
3409 code = ErrorCode.VENDOR_UPDATE_FAILURE
3410
Yifan Hong10c530d2018-12-27 17:34:18 -08003411 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003412 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003413 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003414 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003415 device=self.device, partition=self.partition,
3416 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003417 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003418
Kelvin Zhang0876c412020-06-23 15:06:58 -04003419 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003420 data = source.ReadRangeSet(ranges)
3421 ctx = sha1()
3422
3423 for p in data:
3424 ctx.update(p)
3425
3426 return ctx.hexdigest()
3427
Kelvin Zhang0876c412020-06-23 15:06:58 -04003428 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003429 """Return the hash value for all zero blocks."""
3430 zero_block = '\x00' * 4096
3431 ctx = sha1()
3432 for _ in range(num_blocks):
3433 ctx.update(zero_block)
3434
3435 return ctx.hexdigest()
3436
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003437
Tianjie Xu41976c72019-07-03 13:57:01 -07003438# Expose these two classes to support vendor-specific scripts
3439DataImage = images.DataImage
3440EmptyImage = images.EmptyImage
3441
Tao Bao76def242017-11-21 09:25:31 -08003442
Doug Zongker96a57e72010-09-26 14:57:41 -07003443# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003444PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003445 "ext4": "EMMC",
3446 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003447 "f2fs": "EMMC",
Tim Zimmermanna06f8332022-10-01 11:56:57 +02003448 "squashfs": "EMMC",
3449 "erofs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003450}
Doug Zongker96a57e72010-09-26 14:57:41 -07003451
Kelvin Zhang0876c412020-06-23 15:06:58 -04003452
Yifan Hongbdb32012020-05-07 12:38:53 -07003453def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3454 """
3455 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3456 backwards compatibility. It aborts if the fstab entry has slotselect option
3457 (unless check_no_slot is explicitly set to False).
3458 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003459 fstab = info["fstab"]
3460 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003461 if check_no_slot:
3462 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003463 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003464 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3465 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003466 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003467
3468
Yifan Hongbdb32012020-05-07 12:38:53 -07003469def GetTypeAndDeviceExpr(mount_point, info):
3470 """
3471 Return the filesystem of the partition, and an edify expression that evaluates
3472 to the device at runtime.
3473 """
3474 fstab = info["fstab"]
3475 if fstab:
3476 p = fstab[mount_point]
3477 device_expr = '"%s"' % fstab[mount_point].device
3478 if p.slotselect:
3479 device_expr = 'add_slot_suffix(%s)' % device_expr
3480 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003481 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003482
3483
3484def GetEntryForDevice(fstab, device):
3485 """
3486 Returns:
3487 The first entry in fstab whose device is the given value.
3488 """
3489 if not fstab:
3490 return None
3491 for mount_point in fstab:
3492 if fstab[mount_point].device == device:
3493 return fstab[mount_point]
3494 return None
3495
Kelvin Zhang0876c412020-06-23 15:06:58 -04003496
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003497def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003498 """Parses and converts a PEM-encoded certificate into DER-encoded.
3499
3500 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3501
3502 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003503 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003504 """
3505 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003506 save = False
3507 for line in data.split("\n"):
3508 if "--END CERTIFICATE--" in line:
3509 break
3510 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003511 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003512 if "--BEGIN CERTIFICATE--" in line:
3513 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003514 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003515 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003516
Tao Bao04e1f012018-02-04 12:13:35 -08003517
3518def ExtractPublicKey(cert):
3519 """Extracts the public key (PEM-encoded) from the given certificate file.
3520
3521 Args:
3522 cert: The certificate filename.
3523
3524 Returns:
3525 The public key string.
3526
3527 Raises:
3528 AssertionError: On non-zero return from 'openssl'.
3529 """
3530 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3531 # While openssl 1.1 writes the key into the given filename followed by '-out',
3532 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3533 # stdout instead.
3534 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3535 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3536 pubkey, stderrdata = proc.communicate()
3537 assert proc.returncode == 0, \
3538 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3539 return pubkey
3540
3541
Tao Bao1ac886e2019-06-26 11:58:22 -07003542def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003543 """Extracts the AVB public key from the given public or private key.
3544
3545 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003546 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003547 key: The input key file, which should be PEM-encoded public or private key.
3548
3549 Returns:
3550 The path to the extracted AVB public key file.
3551 """
3552 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3553 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003554 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003555 return output
3556
3557
Doug Zongker412c02f2014-02-13 10:58:24 -08003558def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3559 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003560 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003561
Tao Bao6d5d6232018-03-09 17:04:42 -08003562 Most of the space in the boot and recovery images is just the kernel, which is
3563 identical for the two, so the resulting patch should be efficient. Add it to
3564 the output zip, along with a shell script that is run from init.rc on first
3565 boot to actually do the patching and install the new recovery image.
3566
3567 Args:
3568 input_dir: The top-level input directory of the target-files.zip.
3569 output_sink: The callback function that writes the result.
3570 recovery_img: File object for the recovery image.
3571 boot_img: File objects for the boot image.
3572 info_dict: A dict returned by common.LoadInfoDict() on the input
3573 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003574 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003575 if info_dict is None:
3576 info_dict = OPTIONS.info_dict
3577
Tao Bao6d5d6232018-03-09 17:04:42 -08003578 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003579 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3580
3581 if board_uses_vendorimage:
3582 # In this case, the output sink is rooted at VENDOR
3583 recovery_img_path = "etc/recovery.img"
3584 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3585 sh_dir = "bin"
3586 else:
3587 # In this case the output sink is rooted at SYSTEM
3588 recovery_img_path = "vendor/etc/recovery.img"
3589 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3590 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003591
Tao Baof2cffbd2015-07-22 12:33:18 -07003592 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003593 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003594
3595 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003596 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003597 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003598 # With system-root-image, boot and recovery images will have mismatching
3599 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3600 # to handle such a case.
3601 if system_root_image:
3602 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003603 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003604 assert not os.path.exists(path)
3605 else:
3606 diff_program = ["imgdiff"]
3607 if os.path.exists(path):
3608 diff_program.append("-b")
3609 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003610 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003611 else:
3612 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003613
3614 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3615 _, _, patch = d.ComputePatch()
3616 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003617
Dan Albertebb19aa2015-03-27 19:11:53 -07003618 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003619 # The following GetTypeAndDevice()s need to use the path in the target
3620 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003621 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3622 check_no_slot=False)
3623 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3624 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003625 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003626 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003627
Tao Baof2cffbd2015-07-22 12:33:18 -07003628 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003629
3630 # Note that we use /vendor to refer to the recovery resources. This will
3631 # work for a separate vendor partition mounted at /vendor or a
3632 # /system/vendor subdirectory on the system partition, for which init will
3633 # create a symlink from /vendor to /system/vendor.
3634
3635 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003636if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3637 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003638 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003639 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3640 log -t recovery "Installing new recovery image: succeeded" || \\
3641 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003642else
3643 log -t recovery "Recovery image already installed"
3644fi
3645""" % {'type': recovery_type,
3646 'device': recovery_device,
3647 'sha1': recovery_img.sha1,
3648 'size': recovery_img.size}
3649 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003650 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003651if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3652 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003653 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003654 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3655 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3656 log -t recovery "Installing new recovery image: succeeded" || \\
3657 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003658else
3659 log -t recovery "Recovery image already installed"
3660fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003661""" % {'boot_size': boot_img.size,
3662 'boot_sha1': boot_img.sha1,
3663 'recovery_size': recovery_img.size,
3664 'recovery_sha1': recovery_img.sha1,
3665 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003666 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003667 'recovery_type': recovery_type,
3668 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003669 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003670
Bill Peckhame868aec2019-09-17 17:06:47 -07003671 # The install script location moved from /system/etc to /system/bin in the L
3672 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3673 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003674
Tao Bao32fcdab2018-10-12 10:30:39 -07003675 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003676
Tao Baoda30cfa2017-12-01 16:19:46 -08003677 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003678
3679
3680class DynamicPartitionUpdate(object):
3681 def __init__(self, src_group=None, tgt_group=None, progress=None,
3682 block_difference=None):
3683 self.src_group = src_group
3684 self.tgt_group = tgt_group
3685 self.progress = progress
3686 self.block_difference = block_difference
3687
3688 @property
3689 def src_size(self):
3690 if not self.block_difference:
3691 return 0
3692 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3693
3694 @property
3695 def tgt_size(self):
3696 if not self.block_difference:
3697 return 0
3698 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3699
3700 @staticmethod
3701 def _GetSparseImageSize(img):
3702 if not img:
3703 return 0
3704 return img.blocksize * img.total_blocks
3705
3706
3707class DynamicGroupUpdate(object):
3708 def __init__(self, src_size=None, tgt_size=None):
3709 # None: group does not exist. 0: no size limits.
3710 self.src_size = src_size
3711 self.tgt_size = tgt_size
3712
3713
3714class DynamicPartitionsDifference(object):
3715 def __init__(self, info_dict, block_diffs, progress_dict=None,
3716 source_info_dict=None):
3717 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003718 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003719
3720 self._remove_all_before_apply = False
3721 if source_info_dict is None:
3722 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003723 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003724
Tao Baof1113e92019-06-18 12:10:14 -07003725 block_diff_dict = collections.OrderedDict(
3726 [(e.partition, e) for e in block_diffs])
3727
Yifan Hong10c530d2018-12-27 17:34:18 -08003728 assert len(block_diff_dict) == len(block_diffs), \
3729 "Duplicated BlockDifference object for {}".format(
3730 [partition for partition, count in
3731 collections.Counter(e.partition for e in block_diffs).items()
3732 if count > 1])
3733
Yifan Hong79997e52019-01-23 16:56:19 -08003734 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003735
3736 for p, block_diff in block_diff_dict.items():
3737 self._partition_updates[p] = DynamicPartitionUpdate()
3738 self._partition_updates[p].block_difference = block_diff
3739
3740 for p, progress in progress_dict.items():
3741 if p in self._partition_updates:
3742 self._partition_updates[p].progress = progress
3743
3744 tgt_groups = shlex.split(info_dict.get(
3745 "super_partition_groups", "").strip())
3746 src_groups = shlex.split(source_info_dict.get(
3747 "super_partition_groups", "").strip())
3748
3749 for g in tgt_groups:
3750 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003751 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003752 assert p in self._partition_updates, \
3753 "{} is in target super_{}_partition_list but no BlockDifference " \
3754 "object is provided.".format(p, g)
3755 self._partition_updates[p].tgt_group = g
3756
3757 for g in src_groups:
3758 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003759 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003760 assert p in self._partition_updates, \
3761 "{} is in source super_{}_partition_list but no BlockDifference " \
3762 "object is provided.".format(p, g)
3763 self._partition_updates[p].src_group = g
3764
Yifan Hong45433e42019-01-18 13:55:25 -08003765 target_dynamic_partitions = set(shlex.split(info_dict.get(
3766 "dynamic_partition_list", "").strip()))
3767 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3768 if u.tgt_size)
3769 assert block_diffs_with_target == target_dynamic_partitions, \
3770 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3771 list(target_dynamic_partitions), list(block_diffs_with_target))
3772
3773 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3774 "dynamic_partition_list", "").strip()))
3775 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3776 if u.src_size)
3777 assert block_diffs_with_source == source_dynamic_partitions, \
3778 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3779 list(source_dynamic_partitions), list(block_diffs_with_source))
3780
Yifan Hong10c530d2018-12-27 17:34:18 -08003781 if self._partition_updates:
3782 logger.info("Updating dynamic partitions %s",
3783 self._partition_updates.keys())
3784
Yifan Hong79997e52019-01-23 16:56:19 -08003785 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003786
3787 for g in tgt_groups:
3788 self._group_updates[g] = DynamicGroupUpdate()
3789 self._group_updates[g].tgt_size = int(info_dict.get(
3790 "super_%s_group_size" % g, "0").strip())
3791
3792 for g in src_groups:
3793 if g not in self._group_updates:
3794 self._group_updates[g] = DynamicGroupUpdate()
3795 self._group_updates[g].src_size = int(source_info_dict.get(
3796 "super_%s_group_size" % g, "0").strip())
3797
3798 self._Compute()
3799
3800 def WriteScript(self, script, output_zip, write_verify_script=False):
3801 script.Comment('--- Start patching dynamic partitions ---')
3802 for p, u in self._partition_updates.items():
3803 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3804 script.Comment('Patch partition %s' % p)
3805 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3806 write_verify_script=False)
3807
3808 op_list_path = MakeTempFile()
3809 with open(op_list_path, 'w') as f:
3810 for line in self._op_list:
3811 f.write('{}\n'.format(line))
3812
3813 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3814
3815 script.Comment('Update dynamic partition metadata')
3816 script.AppendExtra('assert(update_dynamic_partitions('
3817 'package_extract_file("dynamic_partitions_op_list")));')
3818
3819 if write_verify_script:
3820 for p, u in self._partition_updates.items():
3821 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3822 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003823 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003824
3825 for p, u in self._partition_updates.items():
3826 if u.tgt_size and u.src_size <= u.tgt_size:
3827 script.Comment('Patch partition %s' % p)
3828 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3829 write_verify_script=write_verify_script)
3830 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003831 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003832
3833 script.Comment('--- End patching dynamic partitions ---')
3834
3835 def _Compute(self):
3836 self._op_list = list()
3837
3838 def append(line):
3839 self._op_list.append(line)
3840
3841 def comment(line):
3842 self._op_list.append("# %s" % line)
3843
3844 if self._remove_all_before_apply:
3845 comment('Remove all existing dynamic partitions and groups before '
3846 'applying full OTA')
3847 append('remove_all_groups')
3848
3849 for p, u in self._partition_updates.items():
3850 if u.src_group and not u.tgt_group:
3851 append('remove %s' % p)
3852
3853 for p, u in self._partition_updates.items():
3854 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3855 comment('Move partition %s from %s to default' % (p, u.src_group))
3856 append('move %s default' % p)
3857
3858 for p, u in self._partition_updates.items():
3859 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3860 comment('Shrink partition %s from %d to %d' %
3861 (p, u.src_size, u.tgt_size))
3862 append('resize %s %s' % (p, u.tgt_size))
3863
3864 for g, u in self._group_updates.items():
3865 if u.src_size is not None and u.tgt_size is None:
3866 append('remove_group %s' % g)
3867 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003868 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003869 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3870 append('resize_group %s %d' % (g, u.tgt_size))
3871
3872 for g, u in self._group_updates.items():
3873 if u.src_size is None and u.tgt_size is not None:
3874 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3875 append('add_group %s %d' % (g, u.tgt_size))
3876 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003877 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003878 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3879 append('resize_group %s %d' % (g, u.tgt_size))
3880
3881 for p, u in self._partition_updates.items():
3882 if u.tgt_group and not u.src_group:
3883 comment('Add partition %s to group %s' % (p, u.tgt_group))
3884 append('add %s %s' % (p, u.tgt_group))
3885
3886 for p, u in self._partition_updates.items():
3887 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003888 comment('Grow partition %s from %d to %d' %
3889 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003890 append('resize %s %d' % (p, u.tgt_size))
3891
3892 for p, u in self._partition_updates.items():
3893 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3894 comment('Move partition %s from default to %s' %
3895 (p, u.tgt_group))
3896 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003897
3898
jiajia tangf3f842b2021-03-17 21:49:44 +08003899def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003900 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003901 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003902
3903 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003904 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003905
3906 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003907 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003908 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003909 tmp_dir = MakeTempDir('boot_', suffix='.img')
3910 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003911 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3912 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003913 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3914 if not os.path.isfile(ramdisk):
3915 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3916 return None
3917 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003918 if ramdisk_format == RamdiskFormat.LZ4:
3919 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3920 elif ramdisk_format == RamdiskFormat.GZ:
3921 with open(ramdisk, 'rb') as input_stream:
3922 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003923 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3924 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003925 p2.wait()
3926 else:
3927 logger.error('Only support lz4 or minigzip ramdisk format.')
3928 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003929
3930 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3931 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3932 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3933 # the host environment.
3934 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003935 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003936
Yifan Hongc65a0542021-01-07 14:21:01 -08003937 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3938 prop_file = os.path.join(extracted_ramdisk, search_path)
3939 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003940 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003941 logger.warning(
3942 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003943
Yifan Hong7dc51172021-01-12 11:27:39 -08003944 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003945
Yifan Hong85ac5012021-01-07 14:43:46 -08003946 except ExternalError as e:
3947 logger.warning('Unable to get boot image build props: %s', e)
3948 return None
3949
3950
3951def GetBootImageTimestamp(boot_img):
3952 """
3953 Get timestamp from ramdisk within the boot image
3954
3955 Args:
3956 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3957
3958 Return:
3959 An integer that corresponds to the timestamp of the boot image, or None
3960 if file has unknown format. Raise exception if an unexpected error has
3961 occurred.
3962 """
3963 prop_file = GetBootImageBuildProp(boot_img)
3964 if not prop_file:
3965 return None
3966
3967 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3968 if props is None:
3969 return None
3970
3971 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003972 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3973 if timestamp:
3974 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003975 logger.warning(
3976 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003977 return None
3978
3979 except ExternalError as e:
3980 logger.warning('Unable to get boot image timestamp: %s', e)
3981 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003982
3983
Kelvin Zhang26390482021-11-02 14:31:10 -07003984def IsSparseImage(filepath):
Kelvin Zhang1caead02022-09-23 10:06:03 -07003985 if not os.path.exists(filepath):
3986 return False
Kelvin Zhang26390482021-11-02 14:31:10 -07003987 with open(filepath, 'rb') as fp:
3988 # Magic for android sparse image format
3989 # https://source.android.com/devices/bootloader/images
3990 return fp.read(4) == b'\x3A\xFF\x26\xED'