blob: 7f720f6055974d0530dff595f3eee8921bc9eacc [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Abhishek Nigam1dfca462023-11-08 02:21:39 +000018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Abhishek Nigam1dfca462023-11-08 02:21:39 +000026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
Kelvin Zhange473ce92023-06-21 13:06:59 -070036import stat
Dennis Song6e5e44d2023-10-03 02:18:06 +000037import sys
Doug Zongkereef39442009-04-02 12:14:19 -070038import tempfile
Abhishek Nigam1dfca462023-11-08 02:21:39 +000039import threading
40import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070041import zipfile
Kelvin Zhangc68c6b92023-11-14 10:54:50 -080042
43from typing import Iterable, Callable
Dennis Song4aae62e2023-10-02 04:31:34 +000044from dataclasses import dataclass
Tao Bao12d87fc2018-01-31 12:18:52 -080045from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070046
Tianjie Xu41976c72019-07-03 13:57:01 -070047import images
Tao Baoc765cca2018-01-31 17:32:40 -080048import sparse_img
Abhishek Nigam1dfca462023-11-08 02:21:39 +000049from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070050
Tao Bao32fcdab2018-10-12 10:30:39 -070051logger = logging.getLogger(__name__)
52
Tao Bao986ee862018-10-04 15:46:16 -070053
Kelvin Zhangc68c6b92023-11-14 10:54:50 -080054@dataclass
55class OptionHandler:
56 extra_long_opts: Iterable[str]
57 handler: Callable
58
Dan Albert8b72aef2015-03-23 19:13:21 -070059class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070060
Dan Albert8b72aef2015-03-23 19:13:21 -070061 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070062 # Set up search path, in order to find framework/ and lib64/. At the time of
63 # running this function, user-supplied search path (`--path`) hasn't been
64 # available. So the value set here is the default, which might be overridden
65 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040066 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070067 if exec_path.endswith('.py'):
68 script_name = os.path.basename(exec_path)
69 # logger hasn't been initialized yet at this point. Use print to output
70 # warnings.
71 print(
72 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040073 'executable -- build and run `{}` directly.'.format(
74 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070075 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040076 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030077
Dan Albert8b72aef2015-03-23 19:13:21 -070078 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080079 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
80 if "ANDROID_HOST_OUT" in os.environ:
81 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080082 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070083 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000084 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070085 self.java_path = "java" # Use the one on the path by default.
Sorin Basca05085832022-09-14 11:33:22 +010086 self.java_args = ["-Xmx4096m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080087 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070088 self.public_key_suffix = ".x509.pem"
89 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070090 # use otatools built boot_signer by default
Dan Albert8b72aef2015-03-23 19:13:21 -070091 self.verbose = False
92 self.tempfiles = []
93 self.device_specific = None
94 self.extras = {}
95 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070096 self.source_info_dict = None
97 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070098 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070099 # Stash size cannot exceed cache_size * threshold.
100 self.cache_size = None
101 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -0700102 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -0700103
104
105OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700106
Tao Bao71197512018-10-11 14:08:45 -0700107# The block size that's used across the releasetools scripts.
108BLOCK_SIZE = 4096
109
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800110# Values for "certificate" in apkcerts that mean special things.
111SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
112
Tao Bao5cc0abb2019-03-21 10:18:05 -0700113# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
114# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800115# descriptor into vbmeta.img. When adding a new entry here, the
116# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
117# accordingly.
Dennis Song6e5e44d2023-10-03 02:18:06 +0000118AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw',
119 'recovery', 'system', 'system_ext', 'vendor', 'vendor_boot',
120 'vendor_kernel_boot', 'vendor_dlkm', 'odm_dlkm',
121 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800122
Tao Bao08c190f2019-06-03 23:07:58 -0700123# Chained VBMeta partitions.
124AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
125
Dennis Song6e5e44d2023-10-03 02:18:06 +0000126# avbtool arguments name
127AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG = '--include_descriptors_from_image'
128AVB_ARG_NAME_CHAIN_PARTITION = '--chain_partition'
129
Tianjie Xu861f4132018-09-12 11:49:33 -0700130# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400131PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700132 'system',
133 'vendor',
134 'product',
135 'system_ext',
136 'odm',
137 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700138 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000139 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400140]
Tianjie Xu861f4132018-09-12 11:49:33 -0700141
Yifan Hong5057b952021-01-07 14:09:57 -0800142# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000143PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800144
Yifan Hongc65a0542021-01-07 14:21:01 -0800145# See sysprop.mk. If file is moved, add new search paths here; don't remove
146# existing search paths.
147RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700148
Kelvin Zhang563750f2021-04-28 12:46:17 -0400149
Dennis Song4aae62e2023-10-02 04:31:34 +0000150@dataclass
151class AvbChainedPartitionArg:
152 """The required arguments for avbtool --chain_partition."""
153 partition: str
154 rollback_index_location: int
155 pubkey_path: str
156
157 def to_string(self):
158 """Convert to string command arguments."""
159 return '{}:{}:{}'.format(
160 self.partition, self.rollback_index_location, self.pubkey_path)
161
162
Abhishek Nigam1dfca462023-11-08 02:21:39 +0000163class ErrorCode(object):
164 """Define error_codes for failures that happen during the actual
165 update package installation.
166
167 Error codes 0-999 are reserved for failures before the package
168 installation (i.e. low battery, package verification failure).
169 Detailed code in 'bootable/recovery/error_code.h' """
170
171 SYSTEM_VERIFICATION_FAILURE = 1000
172 SYSTEM_UPDATE_FAILURE = 1001
173 SYSTEM_UNEXPECTED_CONTENTS = 1002
174 SYSTEM_NONZERO_CONTENTS = 1003
175 SYSTEM_RECOVER_FAILURE = 1004
176 VENDOR_VERIFICATION_FAILURE = 2000
177 VENDOR_UPDATE_FAILURE = 2001
178 VENDOR_UNEXPECTED_CONTENTS = 2002
179 VENDOR_NONZERO_CONTENTS = 2003
180 VENDOR_RECOVER_FAILURE = 2004
181 OEM_PROP_MISMATCH = 3000
182 FINGERPRINT_MISMATCH = 3001
183 THUMBPRINT_MISMATCH = 3002
184 OLDER_BUILD = 3003
185 DEVICE_MISMATCH = 3004
186 BAD_PATCH_FILE = 3005
187 INSUFFICIENT_CACHE_SPACE = 3006
188 TUNE_PARTITION_FAILURE = 3007
189 APPLY_PATCH_FAILURE = 3008
190
191
Dan Albert8b72aef2015-03-23 19:13:21 -0700192class ExternalError(RuntimeError):
193 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700194
195
Tao Bao32fcdab2018-10-12 10:30:39 -0700196def InitLogging():
197 DEFAULT_LOGGING_CONFIG = {
198 'version': 1,
199 'disable_existing_loggers': False,
200 'formatters': {
201 'standard': {
202 'format':
203 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
204 'datefmt': '%Y-%m-%d %H:%M:%S',
205 },
206 },
207 'handlers': {
208 'default': {
209 'class': 'logging.StreamHandler',
210 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700211 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700212 },
213 },
214 'loggers': {
215 '': {
216 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700217 'propagate': True,
Kelvin Zhang9d741282023-10-24 15:35:54 -0700218 'level': 'NOTSET',
Tao Bao32fcdab2018-10-12 10:30:39 -0700219 }
220 }
221 }
222 env_config = os.getenv('LOGGING_CONFIG')
223 if env_config:
224 with open(env_config) as f:
225 config = json.load(f)
226 else:
227 config = DEFAULT_LOGGING_CONFIG
228
229 # Increase the logging level for verbose mode.
230 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700231 config = copy.deepcopy(config)
232 config['handlers']['default']['level'] = 'INFO'
233
234 if OPTIONS.logfile:
235 config = copy.deepcopy(config)
236 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400237 'class': 'logging.FileHandler',
238 'formatter': 'standard',
239 'level': 'INFO',
240 'mode': 'w',
241 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700242 }
243 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700244
245 logging.config.dictConfig(config)
246
247
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900248def FindHostToolPath(tool_name):
249 """Finds the path to the host tool.
250
251 Args:
252 tool_name: name of the tool to find
253 Returns:
Cole Faust6833d7d2023-08-01 18:00:37 -0700254 path to the tool if found under the same directory as this binary is located at. If not found,
255 tool_name is returned.
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900256 """
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900257 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
258 tool_path = os.path.join(my_dir, tool_name)
259 if os.path.exists(tool_path):
260 return tool_path
261
262 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700263
Kelvin Zhang563750f2021-04-28 12:46:17 -0400264
Tao Bao39451582017-05-04 11:10:47 -0700265def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700266 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 Args:
269 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700270 verbose: Whether the commands should be shown. Default to the global
271 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700272 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
273 stdin, etc. stdout and stderr will default to subprocess.PIPE and
274 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800275 universal_newlines will default to True, as most of the users in
276 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700277
278 Returns:
279 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700280 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700281 if 'stdout' not in kwargs and 'stderr' not in kwargs:
282 kwargs['stdout'] = subprocess.PIPE
283 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800284 if 'universal_newlines' not in kwargs:
285 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700286
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900287 if args:
288 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700289 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900290 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700291
Kelvin Zhang766eea72021-06-03 09:36:08 -0400292 if verbose is None:
293 verbose = OPTIONS.verbose
294
Tao Bao32fcdab2018-10-12 10:30:39 -0700295 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400296 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700297 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700298 return subprocess.Popen(args, **kwargs)
299
300
Tao Bao986ee862018-10-04 15:46:16 -0700301def RunAndCheckOutput(args, verbose=None, **kwargs):
302 """Runs the given command and returns the output.
303
304 Args:
305 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700306 verbose: Whether the commands should be shown. Default to the global
307 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700308 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
309 stdin, etc. stdout and stderr will default to subprocess.PIPE and
310 subprocess.STDOUT respectively unless caller specifies any of them.
311
312 Returns:
313 The output string.
314
315 Raises:
316 ExternalError: On non-zero exit from the command.
317 """
Kelvin Zhangc8ff84b2023-02-15 16:52:46 -0800318 if verbose is None:
319 verbose = OPTIONS.verbose
Tao Bao986ee862018-10-04 15:46:16 -0700320 proc = Run(args, verbose=verbose, **kwargs)
321 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800322 if output is None:
323 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700324 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400325 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700326 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700327 if proc.returncode != 0:
328 raise ExternalError(
329 "Failed to run command '{}' (exit code {}):\n{}".format(
330 args, proc.returncode, output))
331 return output
332
333
Tao Baoc765cca2018-01-31 17:32:40 -0800334def RoundUpTo4K(value):
335 rounded_up = value + 4095
336 return rounded_up - (rounded_up % 4096)
337
338
Ying Wang7e6d4e42010-12-13 16:25:36 -0800339def CloseInheritedPipes():
340 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
341 before doing other work."""
342 if platform.system() != "Darwin":
343 return
344 for d in range(3, 1025):
345 try:
346 stat = os.fstat(d)
347 if stat is not None:
348 pipebit = stat[0] & 0x1000
349 if pipebit != 0:
350 os.close(d)
351 except OSError:
352 pass
353
354
Tao Bao1c320f82019-10-04 23:25:12 -0700355class BuildInfo(object):
356 """A class that holds the information for a given build.
357
358 This class wraps up the property querying for a given source or target build.
359 It abstracts away the logic of handling OEM-specific properties, and caches
360 the commonly used properties such as fingerprint.
361
362 There are two types of info dicts: a) build-time info dict, which is generated
363 at build time (i.e. included in a target_files zip); b) OEM info dict that is
364 specified at package generation time (via command line argument
365 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
366 having "oem_fingerprint_properties" in build-time info dict), all the queries
367 would be answered based on build-time info dict only. Otherwise if using
368 OEM-specific properties, some of them will be calculated from two info dicts.
369
370 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800371 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700372
373 Attributes:
374 info_dict: The build-time info dict.
375 is_ab: Whether it's a build that uses A/B OTA.
376 oem_dicts: A list of OEM dicts.
377 oem_props: A list of OEM properties that should be read from OEM dicts; None
378 if the build doesn't use any OEM-specific property.
379 fingerprint: The fingerprint of the build, which would be calculated based
380 on OEM properties if applicable.
381 device: The device name, which could come from OEM dicts if applicable.
382 """
383
384 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
385 "ro.product.manufacturer", "ro.product.model",
386 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700387 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
388 "product", "odm", "vendor", "system_ext", "system"]
389 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
390 "product", "product_services", "odm", "vendor", "system"]
391 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700392
Tianjiefdda51d2021-05-05 14:46:35 -0700393 # The length of vbmeta digest to append to the fingerprint
394 _VBMETA_DIGEST_SIZE_USED = 8
395
396 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700397 """Initializes a BuildInfo instance with the given dicts.
398
399 Note that it only wraps up the given dicts, without making copies.
400
401 Arguments:
402 info_dict: The build-time info dict.
403 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
404 that it always uses the first dict to calculate the fingerprint or the
405 device name. The rest would be used for asserting OEM properties only
406 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700407 use_legacy_id: Use the legacy build id to construct the fingerprint. This
408 is used when we need a BuildInfo class, while the vbmeta digest is
409 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700410
411 Raises:
412 ValueError: On invalid inputs.
413 """
414 self.info_dict = info_dict
415 self.oem_dicts = oem_dicts
416
417 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700418 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700419
Hongguang Chend7c160f2020-05-03 21:24:26 -0700420 # Skip _oem_props if oem_dicts is None to use BuildInfo in
421 # sign_target_files_apks
422 if self.oem_dicts:
423 self._oem_props = info_dict.get("oem_fingerprint_properties")
424 else:
425 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700426
Daniel Normand5fe8622020-01-08 17:01:11 -0800427 def check_fingerprint(fingerprint):
428 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
429 raise ValueError(
430 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
431 "3.2.2. Build Parameters.".format(fingerprint))
432
Daniel Normand5fe8622020-01-08 17:01:11 -0800433 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800434 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 try:
436 fingerprint = self.CalculatePartitionFingerprint(partition)
437 check_fingerprint(fingerprint)
438 self._partition_fingerprints[partition] = fingerprint
439 except ExternalError:
440 continue
441 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800442 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800443 # need a fingerprint when creating the image.
444 self._partition_fingerprints[
445 "system_other"] = self._partition_fingerprints["system"]
446
Tao Bao1c320f82019-10-04 23:25:12 -0700447 # These two should be computed only after setting self._oem_props.
448 self._device = self.GetOemProperty("ro.product.device")
449 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800450 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700451
452 @property
453 def is_ab(self):
454 return self._is_ab
455
456 @property
457 def device(self):
458 return self._device
459
460 @property
461 def fingerprint(self):
462 return self._fingerprint
463
464 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400465 def is_vabc(self):
Kelvin Zhange634bde2023-04-28 23:59:43 -0700466 return self.info_dict.get("virtual_ab_compression") == "true"
Kelvin Zhang563750f2021-04-28 12:46:17 -0400467
468 @property
Kelvin Zhanga9a87ec2022-05-04 16:44:52 -0700469 def is_android_r(self):
470 system_prop = self.info_dict.get("system.build.prop")
471 return system_prop and system_prop.GetProp("ro.build.version.release") == "11"
472
473 @property
Kelvin Zhang2f9a9ae2023-09-27 09:33:52 -0700474 def is_release_key(self):
475 system_prop = self.info_dict.get("build.prop")
476 return system_prop and system_prop.GetProp("ro.build.tags") == "release-key"
477
478 @property
Kelvin Zhang8f830002023-08-16 13:16:48 -0700479 def vabc_compression_param(self):
480 return self.get("virtual_ab_compression_method", "")
481
482 @property
David Anderson1c596172023-04-14 16:01:55 -0700483 def vendor_api_level(self):
484 vendor_prop = self.info_dict.get("vendor.build.prop")
485 if not vendor_prop:
486 return -1
487
488 props = [
489 "ro.board.api_level",
490 "ro.board.first_api_level",
491 "ro.product.first_api_level",
492 ]
493 for prop in props:
494 value = vendor_prop.GetProp(prop)
495 try:
Kelvin Zhange634bde2023-04-28 23:59:43 -0700496 return int(value)
David Anderson1c596172023-04-14 16:01:55 -0700497 except:
Kelvin Zhange634bde2023-04-28 23:59:43 -0700498 pass
David Anderson1c596172023-04-14 16:01:55 -0700499 return -1
500
501 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700502 def is_vabc_xor(self):
503 vendor_prop = self.info_dict.get("vendor.build.prop")
504 vabc_xor_enabled = vendor_prop and \
505 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
506 return vabc_xor_enabled
507
508 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400509 def vendor_suppressed_vabc(self):
510 vendor_prop = self.info_dict.get("vendor.build.prop")
511 vabc_suppressed = vendor_prop and \
512 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
513 return vabc_suppressed and vabc_suppressed.lower() == "true"
514
515 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700516 def oem_props(self):
517 return self._oem_props
518
519 def __getitem__(self, key):
520 return self.info_dict[key]
521
522 def __setitem__(self, key, value):
523 self.info_dict[key] = value
524
525 def get(self, key, default=None):
526 return self.info_dict.get(key, default)
527
528 def items(self):
529 return self.info_dict.items()
530
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000531 def _GetRawBuildProp(self, prop, partition):
532 prop_file = '{}.build.prop'.format(
533 partition) if partition else 'build.prop'
534 partition_props = self.info_dict.get(prop_file)
535 if not partition_props:
536 return None
537 return partition_props.GetProp(prop)
538
Daniel Normand5fe8622020-01-08 17:01:11 -0800539 def GetPartitionBuildProp(self, prop, partition):
540 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800541
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000542 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
Devin Mooreb5195ff2022-02-11 18:44:26 +0000543 # This comes from the generic ramdisk
Kelvin Zhang8250d2c2022-03-23 19:46:09 +0000544 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800545
Daniel Normand5fe8622020-01-08 17:01:11 -0800546 # If provided a partition for this property, only look within that
547 # partition's build.prop.
548 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800549 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800550 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800551 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000552
553 prop_val = self._GetRawBuildProp(prop, partition)
554 if prop_val is not None:
555 return prop_val
556 raise ExternalError("couldn't find %s in %s.build.prop" %
557 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800558
Tao Bao1c320f82019-10-04 23:25:12 -0700559 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800560 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700561 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
562 return self._ResolveRoProductBuildProp(prop)
563
Tianjiefdda51d2021-05-05 14:46:35 -0700564 if prop == "ro.build.id":
565 return self._GetBuildId()
566
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000567 prop_val = self._GetRawBuildProp(prop, None)
568 if prop_val is not None:
569 return prop_val
570
571 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700572
573 def _ResolveRoProductBuildProp(self, prop):
574 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000575 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700576 if prop_val:
577 return prop_val
578
Steven Laver8e2086e2020-04-27 16:26:31 -0700579 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000580 source_order_val = self._GetRawBuildProp(
581 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700582 if source_order_val:
583 source_order = source_order_val.split(",")
584 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700585 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700586
587 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700588 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700589 raise ExternalError(
590 "Invalid ro.product.property_source_order '{}'".format(source_order))
591
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000592 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700593 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000594 "ro.product", "ro.product.{}".format(source_partition), 1)
595 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700596 if prop_val:
597 return prop_val
598
599 raise ExternalError("couldn't resolve {}".format(prop))
600
Steven Laver8e2086e2020-04-27 16:26:31 -0700601 def _GetRoProductPropsDefaultSourceOrder(self):
602 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
603 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000604 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700605 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000606 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700607 if android_version == "10":
608 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
609 # NOTE: float() conversion of android_version will have rounding error.
610 # We are checking for "9" or less, and using "< 10" is well outside of
611 # possible floating point rounding.
612 try:
613 android_version_val = float(android_version)
614 except ValueError:
615 android_version_val = 0
616 if android_version_val < 10:
617 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
618 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
619
Tianjieb37c5be2020-10-15 21:27:10 -0700620 def _GetPlatformVersion(self):
621 version_sdk = self.GetBuildProp("ro.build.version.sdk")
622 # init code switches to version_release_or_codename (see b/158483506). After
623 # API finalization, release_or_codename will be the same as release. This
624 # is the best effort to support pre-S dev stage builds.
625 if int(version_sdk) >= 30:
626 try:
627 return self.GetBuildProp("ro.build.version.release_or_codename")
628 except ExternalError:
629 logger.warning('Failed to find ro.build.version.release_or_codename')
630
631 return self.GetBuildProp("ro.build.version.release")
632
Tianjiefdda51d2021-05-05 14:46:35 -0700633 def _GetBuildId(self):
634 build_id = self._GetRawBuildProp("ro.build.id", None)
635 if build_id:
636 return build_id
637
638 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
639 if not legacy_build_id:
640 raise ExternalError("Couldn't find build id in property file")
641
642 if self.use_legacy_id:
643 return legacy_build_id
644
645 # Append the top 8 chars of vbmeta digest to the existing build id. The
646 # logic needs to match the one in init, so that OTA can deliver correctly.
647 avb_enable = self.info_dict.get("avb_enable") == "true"
648 if not avb_enable:
649 raise ExternalError("AVB isn't enabled when using legacy build id")
650
651 vbmeta_digest = self.info_dict.get("vbmeta_digest")
652 if not vbmeta_digest:
653 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
654 " id")
655 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
656 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
657
658 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
659 return legacy_build_id + '.' + digest_prefix
660
Tianjieb37c5be2020-10-15 21:27:10 -0700661 def _GetPartitionPlatformVersion(self, partition):
662 try:
663 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
664 partition)
665 except ExternalError:
666 return self.GetPartitionBuildProp("ro.build.version.release",
667 partition)
668
Tao Bao1c320f82019-10-04 23:25:12 -0700669 def GetOemProperty(self, key):
670 if self.oem_props is not None and key in self.oem_props:
671 return self.oem_dicts[0][key]
672 return self.GetBuildProp(key)
673
Daniel Normand5fe8622020-01-08 17:01:11 -0800674 def GetPartitionFingerprint(self, partition):
675 return self._partition_fingerprints.get(partition, None)
676
677 def CalculatePartitionFingerprint(self, partition):
678 try:
679 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
680 except ExternalError:
681 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
682 self.GetPartitionBuildProp("ro.product.brand", partition),
683 self.GetPartitionBuildProp("ro.product.name", partition),
684 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700685 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800686 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400687 self.GetPartitionBuildProp(
688 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800689 self.GetPartitionBuildProp("ro.build.type", partition),
690 self.GetPartitionBuildProp("ro.build.tags", partition))
691
Tao Bao1c320f82019-10-04 23:25:12 -0700692 def CalculateFingerprint(self):
693 if self.oem_props is None:
694 try:
695 return self.GetBuildProp("ro.build.fingerprint")
696 except ExternalError:
697 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
698 self.GetBuildProp("ro.product.brand"),
699 self.GetBuildProp("ro.product.name"),
700 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700701 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700702 self.GetBuildProp("ro.build.id"),
703 self.GetBuildProp("ro.build.version.incremental"),
704 self.GetBuildProp("ro.build.type"),
705 self.GetBuildProp("ro.build.tags"))
706 return "%s/%s/%s:%s" % (
707 self.GetOemProperty("ro.product.brand"),
708 self.GetOemProperty("ro.product.name"),
709 self.GetOemProperty("ro.product.device"),
710 self.GetBuildProp("ro.build.thumbprint"))
711
712 def WriteMountOemScript(self, script):
713 assert self.oem_props is not None
714 recovery_mount_options = self.info_dict.get("recovery_mount_options")
715 script.Mount("/oem", recovery_mount_options)
716
717 def WriteDeviceAssertions(self, script, oem_no_mount):
718 # Read the property directly if not using OEM properties.
719 if not self.oem_props:
720 script.AssertDevice(self.device)
721 return
722
723 # Otherwise assert OEM properties.
724 if not self.oem_dicts:
725 raise ExternalError(
726 "No OEM file provided to answer expected assertions")
727
728 for prop in self.oem_props.split():
729 values = []
730 for oem_dict in self.oem_dicts:
731 if prop in oem_dict:
732 values.append(oem_dict[prop])
733 if not values:
734 raise ExternalError(
735 "The OEM file is missing the property %s" % (prop,))
736 script.AssertOemProperty(prop, values, oem_no_mount)
737
738
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700739def DoesInputFileContain(input_file, fn):
740 """Check whether the input target_files.zip contain an entry `fn`"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000741 if isinstance(input_file, zipfile.ZipFile):
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700742 return fn in input_file.namelist()
Kelvin Zhang5ef25192022-10-19 11:25:22 -0700743 elif zipfile.is_zipfile(input_file):
744 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700745 return fn in zfp.namelist()
746 else:
747 if not os.path.isdir(input_file):
748 raise ValueError(
749 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
750 path = os.path.join(input_file, *fn.split("/"))
751 return os.path.exists(path)
752
753
754def ReadBytesFromInputFile(input_file, fn):
755 """Reads the bytes of fn from input zipfile or directory."""
756 if isinstance(input_file, zipfile.ZipFile):
757 return input_file.read(fn)
758 elif zipfile.is_zipfile(input_file):
759 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
760 return zfp.read(fn)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000761 else:
Kelvin Zhang5ef25192022-10-19 11:25:22 -0700762 if not os.path.isdir(input_file):
763 raise ValueError(
764 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000765 path = os.path.join(input_file, *fn.split("/"))
766 try:
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700767 with open(path, "rb") as f:
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000768 return f.read()
769 except IOError as e:
770 if e.errno == errno.ENOENT:
771 raise KeyError(fn)
772
773
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -0700774def ReadFromInputFile(input_file, fn):
775 """Reads the str contents of fn from input zipfile or directory."""
776 return ReadBytesFromInputFile(input_file, fn).decode()
777
778
Kelvin Zhang6b10e152023-05-02 15:48:16 -0700779def WriteBytesToInputFile(input_file, fn, data):
780 """Write bytes |data| contents to fn of input zipfile or directory."""
781 if isinstance(input_file, zipfile.ZipFile):
782 with input_file.open(fn, "w") as entry_fp:
783 return entry_fp.write(data)
784 elif zipfile.is_zipfile(input_file):
785 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
786 with zfp.open(fn, "w") as entry_fp:
787 return entry_fp.write(data)
788 else:
789 if not os.path.isdir(input_file):
790 raise ValueError(
791 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
792 path = os.path.join(input_file, *fn.split("/"))
793 try:
794 with open(path, "wb") as f:
795 return f.write(data)
796 except IOError as e:
797 if e.errno == errno.ENOENT:
798 raise KeyError(fn)
799
800
801def WriteToInputFile(input_file, fn, str: str):
802 """Write str content to fn of input file or directory"""
803 return WriteBytesToInputFile(input_file, fn, str.encode())
804
805
Yifan Hong10482a22021-01-07 14:38:41 -0800806def ExtractFromInputFile(input_file, fn):
807 """Extracts the contents of fn from input zipfile or directory into a file."""
808 if isinstance(input_file, zipfile.ZipFile):
809 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500810 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800811 f.write(input_file.read(fn))
812 return tmp_file
Kelvin Zhangeb147e02022-10-21 10:53:21 -0700813 elif zipfile.is_zipfile(input_file):
814 with zipfile.ZipFile(input_file, "r", allowZip64=True) as zfp:
815 tmp_file = MakeTempFile(os.path.basename(fn))
816 with open(tmp_file, "wb") as fp:
817 fp.write(zfp.read(fn))
818 return tmp_file
Yifan Hong10482a22021-01-07 14:38:41 -0800819 else:
Kelvin Zhangeb147e02022-10-21 10:53:21 -0700820 if not os.path.isdir(input_file):
821 raise ValueError(
822 "Invalid input_file, accepted inputs are ZipFile object, path to .zip file on disk, or path to extracted directory. Actual: " + input_file)
Yifan Hong10482a22021-01-07 14:38:41 -0800823 file = os.path.join(input_file, *fn.split("/"))
824 if not os.path.exists(file):
825 raise KeyError(fn)
826 return file
827
Kelvin Zhang563750f2021-04-28 12:46:17 -0400828
jiajia tangf3f842b2021-03-17 21:49:44 +0800829class RamdiskFormat(object):
830 LZ4 = 1
831 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800832
Kelvin Zhang563750f2021-04-28 12:46:17 -0400833
TJ Rhoades6f488e92022-05-01 22:16:22 -0700834def GetRamdiskFormat(info_dict):
jiajia tang836f76b2021-04-02 14:48:26 +0800835 if info_dict.get('lz4_ramdisks') == 'true':
836 ramdisk_format = RamdiskFormat.LZ4
837 else:
838 ramdisk_format = RamdiskFormat.GZ
839 return ramdisk_format
840
Kelvin Zhang563750f2021-04-28 12:46:17 -0400841
Tao Bao410ad8b2018-08-24 12:08:38 -0700842def LoadInfoDict(input_file, repacking=False):
843 """Loads the key/value pairs from the given input target_files.
844
Tianjiea85bdf02020-07-29 11:56:19 -0700845 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700846 checks and returns the parsed key/value pairs for to the given build. It's
847 usually called early when working on input target_files files, e.g. when
848 generating OTAs, or signing builds. Note that the function may be called
849 against an old target_files file (i.e. from past dessert releases). So the
850 property parsing needs to be backward compatible.
851
852 In a `META/misc_info.txt`, a few properties are stored as links to the files
853 in the PRODUCT_OUT directory. It works fine with the build system. However,
854 they are no longer available when (re)generating images from target_files zip.
855 When `repacking` is True, redirect these properties to the actual files in the
856 unzipped directory.
857
858 Args:
859 input_file: The input target_files file, which could be an open
860 zipfile.ZipFile instance, or a str for the dir that contains the files
861 unzipped from a target_files file.
862 repacking: Whether it's trying repack an target_files file after loading the
863 info dict (default: False). If so, it will rewrite a few loaded
864 properties (e.g. selinux_fc, root_dir) to point to the actual files in
865 target_files file. When doing repacking, `input_file` must be a dir.
866
867 Returns:
868 A dict that contains the parsed key/value pairs.
869
870 Raises:
871 AssertionError: On invalid input arguments.
872 ValueError: On malformed input values.
873 """
874 if repacking:
875 assert isinstance(input_file, str), \
876 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700877
Doug Zongkerc9253822014-02-04 12:17:58 -0800878 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000879 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800880
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700881 try:
Michael Runge6e836112014-04-15 17:40:21 -0700882 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700883 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700884 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700885
Tao Bao410ad8b2018-08-24 12:08:38 -0700886 if "recovery_api_version" not in d:
887 raise ValueError("Failed to find 'recovery_api_version'")
888 if "fstab_version" not in d:
889 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800890
Tao Bao410ad8b2018-08-24 12:08:38 -0700891 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700892 # "selinux_fc" properties should point to the file_contexts files
893 # (file_contexts.bin) under META/.
894 for key in d:
895 if key.endswith("selinux_fc"):
896 fc_basename = os.path.basename(d[key])
897 fc_config = os.path.join(input_file, "META", fc_basename)
898 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700899
Daniel Norman72c626f2019-05-13 15:58:14 -0700900 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700901
Tom Cherryd14b8952018-08-09 14:26:00 -0700902 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700903 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700904 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700905 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700906
David Anderson0ec64ac2019-12-06 12:21:18 -0800907 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700908 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000909 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800910 key_name = part_name + "_base_fs_file"
911 if key_name not in d:
912 continue
913 basename = os.path.basename(d[key_name])
914 base_fs_file = os.path.join(input_file, "META", basename)
915 if os.path.exists(base_fs_file):
916 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700917 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700918 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800919 "Failed to find %s base fs file: %s", part_name, base_fs_file)
920 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700921
Doug Zongker37974732010-09-16 17:44:38 -0700922 def makeint(key):
923 if key in d:
924 d[key] = int(d[key], 0)
925
926 makeint("recovery_api_version")
927 makeint("blocksize")
928 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700929 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700930 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700931 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700932 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800933 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700934
Steve Muckle903a1ca2020-05-07 17:32:10 -0700935 boot_images = "boot.img"
936 if "boot_images" in d:
937 boot_images = d["boot_images"]
938 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400939 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700940
Tao Bao765668f2019-10-04 22:03:00 -0700941 # Load recovery fstab if applicable.
942 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
TJ Rhoades6f488e92022-05-01 22:16:22 -0700943 ramdisk_format = GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800944
Tianjie Xu861f4132018-09-12 11:49:33 -0700945 # Tries to load the build props for all partitions with care_map, including
946 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800947 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800948 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000949 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800950 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700951 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800952
Tao Bao12d87fc2018-01-31 12:18:52 -0800953 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700954 # Set the vbmeta digest if exists
955 try:
956 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
957 except KeyError:
958 pass
959
Kelvin Zhang39aea442020-08-17 11:04:25 -0400960 try:
961 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
962 except KeyError:
963 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700964 return d
965
Tao Baod1de6f32017-03-01 16:38:48 -0800966
Daniel Norman4cc9df62019-07-18 10:11:07 -0700967def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900968 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700969 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900970
Daniel Norman4cc9df62019-07-18 10:11:07 -0700971
972def LoadDictionaryFromFile(file_path):
973 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900974 return LoadDictionaryFromLines(lines)
975
976
Michael Runge6e836112014-04-15 17:40:21 -0700977def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700978 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700979 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700980 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700981 if not line or line.startswith("#"):
982 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700983 if "=" in line:
984 name, value = line.split("=", 1)
985 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700986 return d
987
Tao Baod1de6f32017-03-01 16:38:48 -0800988
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000989class PartitionBuildProps(object):
990 """The class holds the build prop of a particular partition.
991
992 This class loads the build.prop and holds the build properties for a given
993 partition. It also partially recognizes the 'import' statement in the
994 build.prop; and calculates alternative values of some specific build
995 properties during runtime.
996
997 Attributes:
998 input_file: a zipped target-file or an unzipped target-file directory.
999 partition: name of the partition.
1000 props_allow_override: a list of build properties to search for the
1001 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +00001002 build_props: a dict of build properties for the given partition.
1003 prop_overrides: a set of props that are overridden by import.
1004 placeholder_values: A dict of runtime variables' values to replace the
1005 placeholders in the build.prop file. We expect exactly one value for
1006 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +08001007 ramdisk_format: If name is "boot", the format of ramdisk inside the
1008 boot image. Otherwise, its value is ignored.
Elliott Hughes97ad1202023-06-20 16:41:58 -07001009 Use lz4 to decompress by default. If its value is gzip, use gzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001010 """
Kelvin Zhang0876c412020-06-23 15:06:58 -04001011
Tianjie Xu9afb2212020-05-10 21:48:15 +00001012 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001013 self.input_file = input_file
1014 self.partition = name
1015 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +00001016 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001017 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001018 self.prop_overrides = set()
1019 self.placeholder_values = {}
1020 if placeholder_values:
1021 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001022
1023 @staticmethod
1024 def FromDictionary(name, build_props):
1025 """Constructs an instance from a build prop dictionary."""
1026
1027 props = PartitionBuildProps("unknown", name)
1028 props.build_props = build_props.copy()
1029 return props
1030
1031 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +08001032 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001033 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -08001034
Devin Mooreafdd7c72021-12-13 22:04:08 +00001035 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001036 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +00001037 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -08001038 else:
1039 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
1040
1041 props = PartitionBuildProps(input_file, name, placeholder_values)
1042 props._LoadBuildProp(data)
1043 return props
1044
1045 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +00001046 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -08001047 """
1048 Read build.prop for boot image from input_file.
1049 Return empty string if not found.
1050 """
Devin Mooreafdd7c72021-12-13 22:04:08 +00001051 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -08001052 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +00001053 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -08001054 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +00001055 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -08001056 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +08001057 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -08001058 if prop_file is None:
1059 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -05001060 with open(prop_file, "r") as f:
1061 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -08001062
1063 @staticmethod
1064 def _ReadPartitionPropFile(input_file, name):
1065 """
1066 Read build.prop for name from input_file.
1067 Return empty string if not found.
1068 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001069 data = ''
1070 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
1071 '{}/build.prop'.format(name.upper())]:
1072 try:
1073 data = ReadFromInputFile(input_file, prop_file)
1074 break
1075 except KeyError:
1076 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -08001077 if data == '':
1078 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -08001079 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001080
Yifan Hong125d0b62020-09-24 17:07:03 -07001081 @staticmethod
1082 def FromBuildPropFile(name, build_prop_file):
1083 """Constructs an instance from a build prop file."""
1084
1085 props = PartitionBuildProps("unknown", name)
1086 with open(build_prop_file) as f:
1087 props._LoadBuildProp(f.read())
1088 return props
1089
Tianjie Xu9afb2212020-05-10 21:48:15 +00001090 def _LoadBuildProp(self, data):
1091 for line in data.split('\n'):
1092 line = line.strip()
1093 if not line or line.startswith("#"):
1094 continue
1095 if line.startswith("import"):
1096 overrides = self._ImportParser(line)
1097 duplicates = self.prop_overrides.intersection(overrides.keys())
1098 if duplicates:
1099 raise ValueError('prop {} is overridden multiple times'.format(
1100 ','.join(duplicates)))
1101 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1102 self.build_props.update(overrides)
1103 elif "=" in line:
1104 name, value = line.split("=", 1)
1105 if name in self.prop_overrides:
1106 raise ValueError('prop {} is set again after overridden by import '
1107 'statement'.format(name))
1108 self.build_props[name] = value
1109
1110 def _ImportParser(self, line):
1111 """Parses the build prop in a given import statement."""
1112
1113 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001114 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001115 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001116
1117 if len(tokens) == 3:
1118 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1119 return {}
1120
Tianjie Xu9afb2212020-05-10 21:48:15 +00001121 import_path = tokens[1]
1122 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001123 logger.warn('Unrecognized import path {}'.format(line))
1124 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001125
1126 # We only recognize a subset of import statement that the init process
1127 # supports. And we can loose the restriction based on how the dynamic
1128 # fingerprint is used in practice. The placeholder format should be
1129 # ${placeholder}, and its value should be provided by the caller through
1130 # the placeholder_values.
1131 for prop, value in self.placeholder_values.items():
1132 prop_place_holder = '${{{}}}'.format(prop)
1133 if prop_place_holder in import_path:
1134 import_path = import_path.replace(prop_place_holder, value)
1135 if '$' in import_path:
1136 logger.info('Unresolved place holder in import path %s', import_path)
1137 return {}
1138
1139 import_path = import_path.replace('/{}'.format(self.partition),
1140 self.partition.upper())
1141 logger.info('Parsing build props override from %s', import_path)
1142
1143 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1144 d = LoadDictionaryFromLines(lines)
1145 return {key: val for key, val in d.items()
1146 if key in self.props_allow_override}
1147
Kelvin Zhang5ef25192022-10-19 11:25:22 -07001148 def __getstate__(self):
1149 state = self.__dict__.copy()
1150 # Don't pickle baz
1151 if "input_file" in state and isinstance(state["input_file"], zipfile.ZipFile):
1152 state["input_file"] = state["input_file"].filename
1153 return state
1154
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001155 def GetProp(self, prop):
1156 return self.build_props.get(prop)
1157
1158
Tianjie Xucfa86222016-03-07 16:31:19 -08001159def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1160 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001161 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001162 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001163 self.mount_point = mount_point
1164 self.fs_type = fs_type
1165 self.device = device
1166 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001167 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001168 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001169
1170 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001171 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001172 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001173 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001174 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001175
Tao Baod1de6f32017-03-01 16:38:48 -08001176 assert fstab_version == 2
1177
1178 d = {}
1179 for line in data.split("\n"):
1180 line = line.strip()
1181 if not line or line.startswith("#"):
1182 continue
1183
1184 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1185 pieces = line.split()
1186 if len(pieces) != 5:
1187 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1188
1189 # Ignore entries that are managed by vold.
1190 options = pieces[4]
1191 if "voldmanaged=" in options:
1192 continue
1193
1194 # It's a good line, parse it.
1195 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001196 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001197 options = options.split(",")
1198 for i in options:
1199 if i.startswith("length="):
1200 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001201 elif i == "slotselect":
1202 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001203 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001204 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001205 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001206
Tao Baod1de6f32017-03-01 16:38:48 -08001207 mount_flags = pieces[3]
1208 # Honor the SELinux context if present.
1209 context = None
1210 for i in mount_flags.split(","):
1211 if i.startswith("context="):
1212 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001213
Tao Baod1de6f32017-03-01 16:38:48 -08001214 mount_point = pieces[1]
1215 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001216 device=pieces[0], length=length, context=context,
1217 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001218
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001219 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001220 # system. Other areas assume system is always at "/system" so point /system
1221 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001222 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001223 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001224 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001225 return d
1226
1227
Tao Bao765668f2019-10-04 22:03:00 -07001228def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1229 """Finds the path to recovery fstab and loads its contents."""
1230 # recovery fstab is only meaningful when installing an update via recovery
1231 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001232 if info_dict.get('ab_update') == 'true' and \
1233 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001234 return None
1235
1236 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1237 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1238 # cases, since it may load the info_dict from an old build (e.g. when
1239 # generating incremental OTAs from that build).
1240 system_root_image = info_dict.get('system_root_image') == 'true'
1241 if info_dict.get('no_recovery') != 'true':
1242 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
Kelvin Zhang2ab69862023-10-27 10:58:05 -07001243 if not DoesInputFileContain(input_file, recovery_fstab_path):
1244 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
Tao Bao765668f2019-10-04 22:03:00 -07001245 return LoadRecoveryFSTab(
1246 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1247 system_root_image)
1248
1249 if info_dict.get('recovery_as_boot') == 'true':
1250 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
Kelvin Zhang2ab69862023-10-27 10:58:05 -07001251 if not DoesInputFileContain(input_file, recovery_fstab_path):
1252 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
Tao Bao765668f2019-10-04 22:03:00 -07001253 return LoadRecoveryFSTab(
1254 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1255 system_root_image)
1256
1257 return None
1258
1259
Doug Zongker37974732010-09-16 17:44:38 -07001260def DumpInfoDict(d):
1261 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001262 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001263
Dan Albert8b72aef2015-03-23 19:13:21 -07001264
Daniel Norman55417142019-11-25 16:04:36 -08001265def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001266 """Merges dynamic partition info variables.
1267
1268 Args:
1269 framework_dict: The dictionary of dynamic partition info variables from the
1270 partial framework target files.
1271 vendor_dict: The dictionary of dynamic partition info variables from the
1272 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001273
1274 Returns:
1275 The merged dynamic partition info dictionary.
1276 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001277
1278 def uniq_concat(a, b):
jiajia tange5ddfcd2022-06-21 10:36:12 +08001279 combined = set(a.split())
1280 combined.update(set(b.split()))
Daniel Normanb0c75912020-09-24 14:30:21 -07001281 combined = [item.strip() for item in combined if item.strip()]
1282 return " ".join(sorted(combined))
1283
1284 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhangf294c872022-10-06 14:21:36 -07001285 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001286 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1287
1288 merged_dict = {"use_dynamic_partitions": "true"}
Kelvin Zhang6a683ce2022-05-02 12:19:45 -07001289 # For keys-value pairs that are the same, copy to merged dict
1290 for key in vendor_dict.keys():
1291 if key in framework_dict and framework_dict[key] == vendor_dict[key]:
1292 merged_dict[key] = vendor_dict[key]
Daniel Normanb0c75912020-09-24 14:30:21 -07001293
1294 merged_dict["dynamic_partition_list"] = uniq_concat(
1295 framework_dict.get("dynamic_partition_list", ""),
1296 vendor_dict.get("dynamic_partition_list", ""))
1297
1298 # Super block devices are defined by the vendor dict.
1299 if "super_block_devices" in vendor_dict:
1300 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001301 for block_device in merged_dict["super_block_devices"].split():
Daniel Normanb0c75912020-09-24 14:30:21 -07001302 key = "super_%s_device_size" % block_device
1303 if key not in vendor_dict:
1304 raise ValueError("Vendor dict does not contain required key %s." % key)
1305 merged_dict[key] = vendor_dict[key]
1306
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001307 # Partition groups and group sizes are defined by the vendor dict because
1308 # these values may vary for each board that uses a shared system image.
1309 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
jiajia tange5ddfcd2022-06-21 10:36:12 +08001310 for partition_group in merged_dict["super_partition_groups"].split():
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001311 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001312 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001313 if key not in vendor_dict:
1314 raise ValueError("Vendor dict does not contain required key %s." % key)
1315 merged_dict[key] = vendor_dict[key]
1316
1317 # Set the partition group's partition list using a concatenation of the
1318 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001319 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001320 merged_dict[key] = uniq_concat(
1321 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301322
Daniel Normanb0c75912020-09-24 14:30:21 -07001323 # Various other flags should be copied from the vendor dict, if defined.
1324 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1325 "super_metadata_device", "super_partition_error_limit",
1326 "super_partition_size"):
1327 if key in vendor_dict.keys():
1328 merged_dict[key] = vendor_dict[key]
1329
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001330 return merged_dict
1331
1332
Daniel Norman21c34f72020-11-11 17:25:50 -08001333def PartitionMapFromTargetFiles(target_files_dir):
1334 """Builds a map from partition -> path within an extracted target files directory."""
1335 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1336 possible_subdirs = {
1337 "system": ["SYSTEM"],
1338 "vendor": ["VENDOR", "SYSTEM/vendor"],
1339 "product": ["PRODUCT", "SYSTEM/product"],
1340 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1341 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1342 "vendor_dlkm": [
1343 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1344 ],
1345 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001346 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001347 }
1348 partition_map = {}
1349 for partition, subdirs in possible_subdirs.items():
1350 for subdir in subdirs:
1351 if os.path.exists(os.path.join(target_files_dir, subdir)):
1352 partition_map[partition] = subdir
1353 break
1354 return partition_map
1355
1356
Daniel Normand3351562020-10-29 12:33:11 -07001357def SharedUidPartitionViolations(uid_dict, partition_groups):
1358 """Checks for APK sharedUserIds that cross partition group boundaries.
1359
1360 This uses a single or merged build's shareduid_violation_modules.json
1361 output file, as generated by find_shareduid_violation.py or
1362 core/tasks/find-shareduid-violation.mk.
1363
1364 An error is defined as a sharedUserId that is found in a set of partitions
1365 that span more than one partition group.
1366
1367 Args:
1368 uid_dict: A dictionary created by using the standard json module to read a
1369 complete shareduid_violation_modules.json file.
1370 partition_groups: A list of groups, where each group is a list of
1371 partitions.
1372
1373 Returns:
1374 A list of error messages.
1375 """
1376 errors = []
1377 for uid, partitions in uid_dict.items():
1378 found_in_groups = [
1379 group for group in partition_groups
1380 if set(partitions.keys()) & set(group)
1381 ]
1382 if len(found_in_groups) > 1:
1383 errors.append(
1384 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1385 % (uid, ",".join(sorted(partitions.keys()))))
1386 return errors
1387
1388
Daniel Norman21c34f72020-11-11 17:25:50 -08001389def RunHostInitVerifier(product_out, partition_map):
1390 """Runs host_init_verifier on the init rc files within partitions.
1391
1392 host_init_verifier searches the etc/init path within each partition.
1393
1394 Args:
1395 product_out: PRODUCT_OUT directory, containing partition directories.
1396 partition_map: A map of partition name -> relative path within product_out.
1397 """
1398 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1399 cmd = ["host_init_verifier"]
1400 for partition, path in partition_map.items():
1401 if partition not in allowed_partitions:
1402 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1403 partition)
1404 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1405 # Add --property-contexts if the file exists on the partition.
1406 property_contexts = "%s_property_contexts" % (
1407 "plat" if partition == "system" else partition)
1408 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1409 property_contexts)
1410 if os.path.exists(property_contexts_path):
1411 cmd.append("--property-contexts=%s" % property_contexts_path)
1412 # Add the passwd file if the file exists on the partition.
1413 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1414 if os.path.exists(passwd_path):
1415 cmd.extend(["-p", passwd_path])
1416 return RunAndCheckOutput(cmd)
1417
1418
Kelvin Zhangde53f7d2023-10-03 12:21:28 -07001419def AppendAVBSigningArgs(cmd, partition, avb_salt=None):
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001420 """Append signing arguments for avbtool."""
1421 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
Kelvin Zhange634bde2023-04-28 23:59:43 -07001422 key_path = ResolveAVBSigningPathArgs(
1423 OPTIONS.info_dict.get("avb_" + partition + "_key_path"))
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001424 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1425 if key_path and algorithm:
1426 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Kelvin Zhangde53f7d2023-10-03 12:21:28 -07001427 if avb_salt is None:
1428 avb_salt = OPTIONS.info_dict.get("avb_salt")
Tao Bao2b6dfd62017-09-27 17:17:43 -07001429 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001430 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001431 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001432
1433
zhangyongpeng70756972023-04-12 15:31:33 +08001434def ResolveAVBSigningPathArgs(split_args):
1435
1436 def ResolveBinaryPath(path):
1437 if os.path.exists(path):
1438 return path
Kelvin Zhang97a5afe2023-06-27 10:30:48 -07001439 if OPTIONS.search_path:
1440 new_path = os.path.join(OPTIONS.search_path, path)
1441 if os.path.exists(new_path):
1442 return new_path
zhangyongpeng70756972023-04-12 15:31:33 +08001443 raise ExternalError(
Kelvin Zhang43df0802023-07-24 13:16:03 -07001444 "Failed to find {}".format(path))
zhangyongpeng70756972023-04-12 15:31:33 +08001445
1446 if not split_args:
1447 return split_args
1448
1449 if isinstance(split_args, list):
1450 for index, arg in enumerate(split_args[:-1]):
1451 if arg == '--signing_helper':
1452 signing_helper_path = split_args[index + 1]
1453 split_args[index + 1] = ResolveBinaryPath(signing_helper_path)
1454 break
1455 elif isinstance(split_args, str):
1456 split_args = ResolveBinaryPath(split_args)
1457
1458 return split_args
1459
1460
Tao Bao765668f2019-10-04 22:03:00 -07001461def GetAvbPartitionArg(partition, image, info_dict=None):
Dennis Song4aae62e2023-10-02 04:31:34 +00001462 """Returns the VBMeta arguments for one partition.
Daniel Norman276f0622019-07-26 14:13:51 -07001463
1464 It sets up the VBMeta argument by including the partition descriptor from the
1465 given 'image', or by configuring the partition as a chained partition.
1466
1467 Args:
1468 partition: The name of the partition (e.g. "system").
1469 image: The path to the partition image.
1470 info_dict: A dict returned by common.LoadInfoDict(). Will use
1471 OPTIONS.info_dict if None has been given.
1472
1473 Returns:
Dennis Song4aae62e2023-10-02 04:31:34 +00001474 A list of VBMeta arguments for one partition.
Daniel Norman276f0622019-07-26 14:13:51 -07001475 """
1476 if info_dict is None:
1477 info_dict = OPTIONS.info_dict
1478
1479 # Check if chain partition is used.
1480 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001481 if not key_path:
Dennis Song6e5e44d2023-10-03 02:18:06 +00001482 return [AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG, image]
cfig1aeef722019-09-20 22:45:06 +08001483
1484 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1485 # into vbmeta.img. The recovery image will be configured on an independent
1486 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1487 # See details at
1488 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001489 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001490 return []
1491
1492 # Otherwise chain the partition into vbmeta.
1493 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
Dennis Song6e5e44d2023-10-03 02:18:06 +00001494 return [AVB_ARG_NAME_CHAIN_PARTITION, chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001495
1496
Dennis Song4aae62e2023-10-02 04:31:34 +00001497def GetAvbPartitionsArg(partitions,
1498 resolve_rollback_index_location_conflict=False,
1499 info_dict=None):
1500 """Returns the VBMeta arguments for all AVB partitions.
1501
1502 It sets up the VBMeta argument by calling GetAvbPartitionArg of all
1503 partitions.
1504
1505 Args:
1506 partitions: A dict of all AVB partitions.
1507 resolve_rollback_index_location_conflict: If true, resolve conflicting avb
1508 rollback index locations by assigning the smallest unused value.
1509 info_dict: A dict returned by common.LoadInfoDict().
1510
1511 Returns:
1512 A list of VBMeta arguments for all partitions.
1513 """
1514 # An AVB partition will be linked into a vbmeta partition by either
1515 # AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG or AVB_ARG_NAME_CHAIN_PARTITION, there
1516 # should be no other cases.
1517 valid_args = {
1518 AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG: [],
1519 AVB_ARG_NAME_CHAIN_PARTITION: []
1520 }
1521
1522 for partition, path in partitions.items():
1523 avb_partition_arg = GetAvbPartitionArg(partition, path, info_dict)
1524 if not avb_partition_arg:
1525 continue
1526 arg_name, arg_value = avb_partition_arg
1527 assert arg_name in valid_args
1528 valid_args[arg_name].append(arg_value)
1529
1530 # Copy the arguments for non-chained AVB partitions directly without
1531 # intervention.
1532 avb_args = []
1533 for image in valid_args[AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG]:
1534 avb_args.extend([AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG, image])
1535
1536 # Handle chained AVB partitions. The rollback index location might be
1537 # adjusted if two partitions use the same value. This may happen when mixing
1538 # a shared system image with other vendor images.
1539 used_index_loc = set()
1540 for chained_partition_arg in valid_args[AVB_ARG_NAME_CHAIN_PARTITION]:
1541 if resolve_rollback_index_location_conflict:
1542 while chained_partition_arg.rollback_index_location in used_index_loc:
1543 chained_partition_arg.rollback_index_location += 1
1544
1545 used_index_loc.add(chained_partition_arg.rollback_index_location)
1546 avb_args.extend([AVB_ARG_NAME_CHAIN_PARTITION,
1547 chained_partition_arg.to_string()])
1548
1549 return avb_args
1550
1551
Tao Bao02a08592018-07-22 12:40:45 -07001552def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1553 """Constructs and returns the arg to build or verify a chained partition.
1554
1555 Args:
1556 partition: The partition name.
1557 info_dict: The info dict to look up the key info and rollback index
1558 location.
1559 key: The key to be used for building or verifying the partition. Defaults to
1560 the key listed in info_dict.
1561
1562 Returns:
Dennis Song4aae62e2023-10-02 04:31:34 +00001563 An AvbChainedPartitionArg object with rollback_index_location and
1564 pubkey_path that can be used to build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001565 """
1566 if key is None:
1567 key = info_dict["avb_" + partition + "_key_path"]
zhangyongpeng70756972023-04-12 15:31:33 +08001568 key = ResolveAVBSigningPathArgs(key)
Tao Bao1ac886e2019-06-26 11:58:22 -07001569 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001570 rollback_index_location = info_dict[
1571 "avb_" + partition + "_rollback_index_location"]
Dennis Song4aae62e2023-10-02 04:31:34 +00001572 return AvbChainedPartitionArg(
1573 partition=partition,
1574 rollback_index_location=int(rollback_index_location),
1575 pubkey_path=pubkey_path)
Tao Bao02a08592018-07-22 12:40:45 -07001576
1577
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001578def _HasGkiCertificationArgs():
1579 return ("gki_signing_key_path" in OPTIONS.info_dict and
1580 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001581
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001582
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001583def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001584 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001585 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001586
zhangyongpeng70756972023-04-12 15:31:33 +08001587 key_path = ResolveAVBSigningPathArgs(key_path)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001588
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001589 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001590 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001591 raise ExternalError(
1592 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001593
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001594 output_certificate = tempfile.NamedTemporaryFile()
1595 cmd = [
1596 "generate_gki_certificate",
1597 "--name", image_name,
1598 "--algorithm", algorithm,
1599 "--key", key_path,
1600 "--output", output_certificate.name,
1601 image,
1602 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001603
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001604 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1605 signature_args = signature_args.strip()
1606 if signature_args:
1607 cmd.extend(["--additional_avb_args", signature_args])
1608
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001609 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001610 args = args.strip()
1611 if args:
1612 cmd.extend(["--additional_avb_args", args])
1613
1614 RunAndCheckOutput(cmd)
1615
1616 output_certificate.seek(os.SEEK_SET, 0)
1617 data = output_certificate.read()
1618 output_certificate.close()
1619 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001620
1621
Dennis Song4aae62e2023-10-02 04:31:34 +00001622def BuildVBMeta(image_path, partitions, name, needed_partitions,
1623 resolve_rollback_index_location_conflict=False):
Daniel Norman276f0622019-07-26 14:13:51 -07001624 """Creates a VBMeta image.
1625
1626 It generates the requested VBMeta image. The requested image could be for
1627 top-level or chained VBMeta image, which is determined based on the name.
1628
1629 Args:
1630 image_path: The output path for the new VBMeta image.
1631 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001632 values. Only valid partition names are accepted, as partitions listed
1633 in common.AVB_PARTITIONS and custom partitions listed in
1634 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001635 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1636 needed_partitions: Partitions whose descriptors should be included into the
1637 generated VBMeta image.
Dennis Song4aae62e2023-10-02 04:31:34 +00001638 resolve_rollback_index_location_conflict: If true, resolve conflicting avb
1639 rollback index locations by assigning the smallest unused value.
Daniel Norman276f0622019-07-26 14:13:51 -07001640
1641 Raises:
1642 AssertionError: On invalid input args.
1643 """
1644 avbtool = OPTIONS.info_dict["avb_avbtool"]
1645 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1646 AppendAVBSigningArgs(cmd, name)
1647
Hongguang Chenf23364d2020-04-27 18:36:36 -07001648 custom_partitions = OPTIONS.info_dict.get(
1649 "avb_custom_images_partition_list", "").strip().split()
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07001650 custom_avb_partitions = ["vbmeta_" + part for part in OPTIONS.info_dict.get(
1651 "avb_custom_vbmeta_images_partition_list", "").strip().split()]
Hongguang Chenf23364d2020-04-27 18:36:36 -07001652
Dennis Song4aae62e2023-10-02 04:31:34 +00001653 avb_partitions = {}
Daniel Norman276f0622019-07-26 14:13:51 -07001654 for partition, path in partitions.items():
1655 if partition not in needed_partitions:
1656 continue
1657 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001658 partition in AVB_VBMETA_PARTITIONS or
Kelvin Zhangb81b4e32023-01-10 10:37:56 -08001659 partition in custom_avb_partitions or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001660 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001661 'Unknown partition: {}'.format(partition)
1662 assert os.path.exists(path), \
1663 'Failed to find {} for {}'.format(path, partition)
Dennis Song4aae62e2023-10-02 04:31:34 +00001664 avb_partitions[partition] = path
1665 cmd.extend(GetAvbPartitionsArg(avb_partitions,
1666 resolve_rollback_index_location_conflict))
Daniel Norman276f0622019-07-26 14:13:51 -07001667
1668 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1669 if args and args.strip():
1670 split_args = shlex.split(args)
1671 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001672 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001673 # as a path relative to source tree, which may not be available at the
1674 # same location when running this script (we have the input target_files
1675 # zip only). For such cases, we additionally scan other locations (e.g.
1676 # IMAGES/, RADIO/, etc) before bailing out.
Dennis Song6e5e44d2023-10-03 02:18:06 +00001677 if arg == AVB_ARG_NAME_INCLUDE_DESC_FROM_IMG:
Tianjie Xueaed60c2020-03-12 00:33:28 -07001678 chained_image = split_args[index + 1]
1679 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001680 continue
1681 found = False
1682 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1683 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001684 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001685 if os.path.exists(alt_path):
1686 split_args[index + 1] = alt_path
1687 found = True
1688 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001689 assert found, 'Failed to find {}'.format(chained_image)
zhangyongpeng70756972023-04-12 15:31:33 +08001690
1691 split_args = ResolveAVBSigningPathArgs(split_args)
Daniel Norman276f0622019-07-26 14:13:51 -07001692 cmd.extend(split_args)
1693
1694 RunAndCheckOutput(cmd)
1695
1696
jiajia tang836f76b2021-04-02 14:48:26 +08001697def _MakeRamdisk(sourcedir, fs_config_file=None,
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001698 dev_node_file=None,
jiajia tang836f76b2021-04-02 14:48:26 +08001699 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001700 ramdisk_img = tempfile.NamedTemporaryFile()
1701
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001702 cmd = ["mkbootfs"]
1703
1704 if fs_config_file and os.access(fs_config_file, os.F_OK):
1705 cmd.extend(["-f", fs_config_file])
1706
1707 if dev_node_file and os.access(dev_node_file, os.F_OK):
1708 cmd.extend(["-n", dev_node_file])
1709
1710 cmd.append(os.path.join(sourcedir, "RAMDISK"))
1711
Steve Mucklee1b10862019-07-10 10:49:37 -07001712 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001713 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001714 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001715 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001716 elif ramdisk_format == RamdiskFormat.GZ:
Elliott Hughes97ad1202023-06-20 16:41:58 -07001717 p2 = Run(["gzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001718 else:
Elliott Hughes97ad1202023-06-20 16:41:58 -07001719 raise ValueError("Only support lz4 or gzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001720
1721 p2.wait()
1722 p1.wait()
1723 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001724 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001725
1726 return ramdisk_img
1727
1728
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001729def _BuildBootableImage(image_name, sourcedir, fs_config_file,
1730 dev_node_file=None, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001731 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001732 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001733
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001734 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001735 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1736 we are building a two-step special image (i.e. building a recovery image to
1737 be loaded into /boot in two-step OTAs).
1738
1739 Return the image data, or None if sourcedir does not appear to contains files
1740 for building the requested image.
1741 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001742
Yifan Hong63c5ca12020-10-08 11:54:02 -07001743 if info_dict is None:
1744 info_dict = OPTIONS.info_dict
1745
Steve Muckle9793cf62020-04-08 18:27:00 -07001746 # "boot" or "recovery", without extension.
1747 partition_name = os.path.basename(sourcedir).lower()
1748
Yifan Hong63c5ca12020-10-08 11:54:02 -07001749 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001750 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001751 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1752 logger.info("Excluded kernel binary from recovery image.")
1753 else:
1754 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001755 elif partition_name == "init_boot":
1756 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001757 else:
1758 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001759 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001760 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001761 return None
1762
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001763 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1764
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001765 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001766 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001767
Doug Zongkereef39442009-04-02 12:14:19 -07001768 img = tempfile.NamedTemporaryFile()
1769
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001770 if has_ramdisk:
TJ Rhoades6f488e92022-05-01 22:16:22 -07001771 ramdisk_format = GetRamdiskFormat(info_dict)
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001772 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file, dev_node_file,
jiajia tang836f76b2021-04-02 14:48:26 +08001773 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001774
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001775 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1776 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1777
Yifan Hong63c5ca12020-10-08 11:54:02 -07001778 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001779 if kernel_path is not None:
1780 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001781
Benoit Fradina45a8682014-07-14 21:00:43 +02001782 fn = os.path.join(sourcedir, "second")
1783 if os.access(fn, os.F_OK):
1784 cmd.append("--second")
1785 cmd.append(fn)
1786
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001787 fn = os.path.join(sourcedir, "dtb")
1788 if os.access(fn, os.F_OK):
1789 cmd.append("--dtb")
1790 cmd.append(fn)
1791
Doug Zongker171f1cd2009-06-15 22:36:37 -07001792 fn = os.path.join(sourcedir, "cmdline")
1793 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001794 cmd.append("--cmdline")
1795 cmd.append(open(fn).read().rstrip("\n"))
1796
1797 fn = os.path.join(sourcedir, "base")
1798 if os.access(fn, os.F_OK):
1799 cmd.append("--base")
1800 cmd.append(open(fn).read().rstrip("\n"))
1801
Ying Wang4de6b5b2010-08-25 14:29:34 -07001802 fn = os.path.join(sourcedir, "pagesize")
1803 if os.access(fn, os.F_OK):
1804 cmd.append("--pagesize")
1805 cmd.append(open(fn).read().rstrip("\n"))
1806
Steve Mucklef84668e2020-03-16 19:13:46 -07001807 if partition_name == "recovery":
1808 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301809 if not args:
1810 # Fall back to "mkbootimg_args" for recovery image
1811 # in case "recovery_mkbootimg_args" is not set.
1812 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001813 elif partition_name == "init_boot":
1814 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001815 else:
1816 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001817 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001818 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001819
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001820 args = info_dict.get("mkbootimg_version_args")
1821 if args and args.strip():
1822 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001823
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001824 if has_ramdisk:
1825 cmd.extend(["--ramdisk", ramdisk_img.name])
1826
Tao Baod95e9fd2015-03-29 23:07:41 -07001827 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001828 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001829 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001830 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001831 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001832 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001833
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001834 if partition_name == "recovery":
1835 if info_dict.get("include_recovery_dtbo") == "true":
1836 fn = os.path.join(sourcedir, "recovery_dtbo")
1837 cmd.extend(["--recovery_dtbo", fn])
1838 if info_dict.get("include_recovery_acpio") == "true":
1839 fn = os.path.join(sourcedir, "recovery_acpio")
1840 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001841
Tao Bao986ee862018-10-04 15:46:16 -07001842 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001843
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001844 if _HasGkiCertificationArgs():
1845 if not os.path.exists(img.name):
1846 raise ValueError("Cannot find GKI boot.img")
1847 if kernel_path is None or not os.path.exists(kernel_path):
1848 raise ValueError("Cannot find GKI kernel.img")
1849
1850 # Certify GKI images.
1851 boot_signature_bytes = b''
1852 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1853 boot_signature_bytes += _GenerateGkiCertificate(
1854 kernel_path, "generic_kernel")
1855
1856 BOOT_SIGNATURE_SIZE = 16 * 1024
1857 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1858 raise ValueError(
1859 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1860 boot_signature_bytes += (
1861 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1862 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1863
1864 with open(img.name, 'ab') as f:
1865 f.write(boot_signature_bytes)
1866
Tao Baod95e9fd2015-03-29 23:07:41 -07001867 # Sign the image if vboot is non-empty.
hungweichen22e3b012022-08-19 06:35:43 +00001868 if info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001869 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001870 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001871 # We have switched from the prebuilt futility binary to using the tool
1872 # (futility-host) built from the source. Override the setting in the old
1873 # TF.zip.
1874 futility = info_dict["futility"]
1875 if futility.startswith("prebuilts/"):
1876 futility = "futility-host"
1877 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001878 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001879 info_dict["vboot_key"] + ".vbprivk",
1880 info_dict["vboot_subkey"] + ".vbprivk",
1881 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001882 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001883 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001884
Tao Baof3282b42015-04-01 11:21:55 -07001885 # Clean up the temp files.
1886 img_unsigned.close()
1887 img_keyblock.close()
1888
David Zeuthen8fecb282017-12-01 16:24:01 -05001889 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001890 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001891 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001892 if partition_name == "recovery":
1893 part_size = info_dict["recovery_size"]
1894 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001895 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001896 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001897 "--partition_size", str(part_size), "--partition_name",
1898 partition_name]
Kelvin Zhangde53f7d2023-10-03 12:21:28 -07001899 salt = None
1900 if kernel_path is not None:
1901 with open(kernel_path, "rb") as fp:
1902 salt = sha256(fp.read()).hexdigest()
1903 AppendAVBSigningArgs(cmd, partition_name, salt)
David Zeuthen8fecb282017-12-01 16:24:01 -05001904 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001905 if args and args.strip():
zhangyongpeng70756972023-04-12 15:31:33 +08001906 split_args = ResolveAVBSigningPathArgs(shlex.split(args))
1907 cmd.extend(split_args)
Tao Bao986ee862018-10-04 15:46:16 -07001908 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001909
1910 img.seek(os.SEEK_SET, 0)
1911 data = img.read()
1912
1913 if has_ramdisk:
1914 ramdisk_img.close()
1915 img.close()
1916
1917 return data
1918
1919
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001920def _SignBootableImage(image_path, prebuilt_name, partition_name,
1921 info_dict=None):
1922 """Performs AVB signing for a prebuilt boot.img.
1923
1924 Args:
1925 image_path: The full path of the image, e.g., /path/to/boot.img.
1926 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001927 boot-5.10.img, recovery.img or init_boot.img.
1928 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001929 info_dict: The information dict read from misc_info.txt.
1930 """
1931 if info_dict is None:
1932 info_dict = OPTIONS.info_dict
1933
1934 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1935 if info_dict.get("avb_enable") == "true":
1936 avbtool = info_dict["avb_avbtool"]
1937 if partition_name == "recovery":
1938 part_size = info_dict["recovery_size"]
1939 else:
1940 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1941
1942 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1943 "--partition_size", str(part_size), "--partition_name",
1944 partition_name]
Kelvin Zhang160762a2023-10-17 12:27:56 -07001945 # Use sha256 of the kernel as salt for reproducible builds
1946 with tempfile.TemporaryDirectory() as tmpdir:
1947 RunAndCheckOutput(["unpack_bootimg", "--boot_img", image_path, "--out", tmpdir])
1948 for filename in ["kernel", "ramdisk", "vendor_ramdisk00"]:
1949 path = os.path.join(tmpdir, filename)
1950 if os.path.exists(path) and os.path.getsize(path):
Kelvin Zhang9f9ac4e2023-11-01 10:12:03 -07001951 print("Using {} as salt for avb footer of {}".format(
1952 filename, partition_name))
Kelvin Zhang160762a2023-10-17 12:27:56 -07001953 with open(path, "rb") as fp:
1954 salt = sha256(fp.read()).hexdigest()
Kelvin Zhang9f9ac4e2023-11-01 10:12:03 -07001955 break
Kelvin Zhang160762a2023-10-17 12:27:56 -07001956 AppendAVBSigningArgs(cmd, partition_name, salt)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001957 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1958 if args and args.strip():
zhangyongpeng70756972023-04-12 15:31:33 +08001959 split_args = ResolveAVBSigningPathArgs(shlex.split(args))
1960 cmd.extend(split_args)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001961 RunAndCheckOutput(cmd)
1962
1963
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001964def HasRamdisk(partition_name, info_dict=None):
1965 """Returns true/false to see if a bootable image should have a ramdisk.
1966
1967 Args:
1968 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1969 info_dict: The information dict read from misc_info.txt.
1970 """
1971 if info_dict is None:
1972 info_dict = OPTIONS.info_dict
1973
1974 if partition_name != "boot":
1975 return True # init_boot.img or recovery.img has a ramdisk.
1976
1977 if info_dict.get("recovery_as_boot") == "true":
1978 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1979
Bowgo Tsai85578e02022-04-19 10:50:59 +08001980 if info_dict.get("gki_boot_image_without_ramdisk") == "true":
1981 return False # A GKI boot.img has no ramdisk since Android-13.
1982
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001983 if info_dict.get("system_root_image") == "true":
1984 # The ramdisk content is merged into the system.img, so there is NO
1985 # ramdisk in the boot.img or boot-<kernel version>.img.
1986 return False
1987
1988 if info_dict.get("init_boot") == "true":
1989 # The ramdisk is moved to the init_boot.img, so there is NO
1990 # ramdisk in the boot.img or boot-<kernel version>.img.
1991 return False
1992
1993 return True
1994
1995
Doug Zongkerd5131602012-08-02 14:46:42 -07001996def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Vincent Donnefort6e861e92023-02-17 10:12:57 +00001997 info_dict=None, two_step_image=False,
1998 dev_nodes=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001999 """Return a File object with the desired bootable image.
2000
2001 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
2002 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
2003 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07002004
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002005 if info_dict is None:
2006 info_dict = OPTIONS.info_dict
2007
Doug Zongker55d93282011-01-25 17:03:34 -08002008 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
2009 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07002010 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08002011 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07002012
2013 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2014 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07002015 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07002016 return File.FromLocalFile(name, prebuilt_path)
2017
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08002018 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002019 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
2020 if os.path.exists(prebuilt_path):
2021 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
2022 signed_img = MakeTempFile()
2023 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002024 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
2025 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07002026
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08002027 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07002028
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08002029 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07002030
Doug Zongker6f1d0312014-08-22 08:07:12 -07002031 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07002032 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04002033 os.path.join(unpack_dir, fs_config),
Vincent Donnefort6e861e92023-02-17 10:12:57 +00002034 os.path.join(unpack_dir, 'META/ramdisk_node_list')
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07002035 if dev_nodes else None,
Tao Baod42e97e2016-11-30 12:11:57 -08002036 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07002037 if data:
2038 return File(name, data)
2039 return None
Doug Zongker55d93282011-01-25 17:03:34 -08002040
Doug Zongkereef39442009-04-02 12:14:19 -07002041
Lucas Wei03230252022-04-18 16:00:40 +08002042def _BuildVendorBootImage(sourcedir, partition_name, info_dict=None):
Steve Mucklee1b10862019-07-10 10:49:37 -07002043 """Build a vendor boot image from the specified sourcedir.
2044
2045 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
2046 turn them into a vendor boot image.
2047
2048 Return the image data, or None if sourcedir does not appear to contains files
2049 for building the requested image.
2050 """
2051
2052 if info_dict is None:
2053 info_dict = OPTIONS.info_dict
2054
2055 img = tempfile.NamedTemporaryFile()
2056
TJ Rhoades6f488e92022-05-01 22:16:22 -07002057 ramdisk_format = GetRamdiskFormat(info_dict)
jiajia tang836f76b2021-04-02 14:48:26 +08002058 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07002059
2060 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
2061 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
2062
2063 cmd = [mkbootimg]
2064
2065 fn = os.path.join(sourcedir, "dtb")
2066 if os.access(fn, os.F_OK):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002067 has_vendor_kernel_boot = (info_dict.get(
2068 "vendor_kernel_boot", "").lower() == "true")
Lucas Wei03230252022-04-18 16:00:40 +08002069
2070 # Pack dtb into vendor_kernel_boot if building vendor_kernel_boot.
2071 # Otherwise pack dtb into vendor_boot.
2072 if not has_vendor_kernel_boot or partition_name == "vendor_kernel_boot":
2073 cmd.append("--dtb")
2074 cmd.append(fn)
Steve Mucklee1b10862019-07-10 10:49:37 -07002075
2076 fn = os.path.join(sourcedir, "vendor_cmdline")
2077 if os.access(fn, os.F_OK):
2078 cmd.append("--vendor_cmdline")
2079 cmd.append(open(fn).read().rstrip("\n"))
2080
2081 fn = os.path.join(sourcedir, "base")
2082 if os.access(fn, os.F_OK):
2083 cmd.append("--base")
2084 cmd.append(open(fn).read().rstrip("\n"))
2085
2086 fn = os.path.join(sourcedir, "pagesize")
2087 if os.access(fn, os.F_OK):
2088 cmd.append("--pagesize")
2089 cmd.append(open(fn).read().rstrip("\n"))
2090
2091 args = info_dict.get("mkbootimg_args")
2092 if args and args.strip():
2093 cmd.extend(shlex.split(args))
2094
2095 args = info_dict.get("mkbootimg_version_args")
2096 if args and args.strip():
2097 cmd.extend(shlex.split(args))
2098
2099 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
2100 cmd.extend(["--vendor_boot", img.name])
2101
Devin Moore50509012021-01-13 10:45:04 -08002102 fn = os.path.join(sourcedir, "vendor_bootconfig")
2103 if os.access(fn, os.F_OK):
2104 cmd.append("--vendor_bootconfig")
2105 cmd.append(fn)
2106
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002107 ramdisk_fragment_imgs = []
2108 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
2109 if os.access(fn, os.F_OK):
2110 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
2111 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04002112 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
2113 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002114 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04002115 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
2116 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002117 # Use prebuilt image if found, else create ramdisk from supplied files.
2118 if os.access(fn, os.F_OK):
2119 ramdisk_fragment_pathname = fn
2120 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04002121 ramdisk_fragment_root = os.path.join(
2122 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08002123 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
2124 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002125 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
2126 ramdisk_fragment_pathname = ramdisk_fragment_img.name
2127 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
2128
Steve Mucklee1b10862019-07-10 10:49:37 -07002129 RunAndCheckOutput(cmd)
2130
2131 # AVB: if enabled, calculate and add hash.
2132 if info_dict.get("avb_enable") == "true":
2133 avbtool = info_dict["avb_avbtool"]
Lucas Wei03230252022-04-18 16:00:40 +08002134 part_size = info_dict[f'{partition_name}_size']
Steve Mucklee1b10862019-07-10 10:49:37 -07002135 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Lucas Wei03230252022-04-18 16:00:40 +08002136 "--partition_size", str(part_size), "--partition_name", partition_name]
2137 AppendAVBSigningArgs(cmd, partition_name)
2138 args = info_dict.get(f'avb_{partition_name}_add_hash_footer_args')
Steve Mucklee1b10862019-07-10 10:49:37 -07002139 if args and args.strip():
zhangyongpeng70756972023-04-12 15:31:33 +08002140 split_args = ResolveAVBSigningPathArgs(shlex.split(args))
2141 cmd.extend(split_args)
Steve Mucklee1b10862019-07-10 10:49:37 -07002142 RunAndCheckOutput(cmd)
2143
2144 img.seek(os.SEEK_SET, 0)
2145 data = img.read()
2146
Yo Chiangd21e7dc2020-12-10 18:42:47 +08002147 for f in ramdisk_fragment_imgs:
2148 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07002149 ramdisk_img.close()
2150 img.close()
2151
2152 return data
2153
2154
2155def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
2156 info_dict=None):
2157 """Return a File object with the desired vendor boot image.
2158
2159 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
2160 the source files in 'unpack_dir'/'tree_subdir'."""
2161
2162 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2163 if os.path.exists(prebuilt_path):
2164 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2165 return File.FromLocalFile(name, prebuilt_path)
2166
2167 logger.info("building image from target_files %s...", tree_subdir)
2168
2169 if info_dict is None:
2170 info_dict = OPTIONS.info_dict
2171
Kelvin Zhang0876c412020-06-23 15:06:58 -04002172 data = _BuildVendorBootImage(
Lucas Wei03230252022-04-18 16:00:40 +08002173 os.path.join(unpack_dir, tree_subdir), "vendor_boot", info_dict)
2174 if data:
2175 return File(name, data)
2176 return None
2177
2178
2179def GetVendorKernelBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002180 info_dict=None):
Lucas Wei03230252022-04-18 16:00:40 +08002181 """Return a File object with the desired vendor kernel boot image.
2182
2183 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
2184 the source files in 'unpack_dir'/'tree_subdir'."""
2185
2186 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
2187 if os.path.exists(prebuilt_path):
2188 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
2189 return File.FromLocalFile(name, prebuilt_path)
2190
2191 logger.info("building image from target_files %s...", tree_subdir)
2192
2193 if info_dict is None:
2194 info_dict = OPTIONS.info_dict
2195
2196 data = _BuildVendorBootImage(
2197 os.path.join(unpack_dir, tree_subdir), "vendor_kernel_boot", info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07002198 if data:
2199 return File(name, data)
2200 return None
2201
2202
Narayan Kamatha07bf042017-08-14 14:49:21 +01002203def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08002204 """Gunzips the given gzip compressed file to a given output file."""
2205 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04002206 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01002207 shutil.copyfileobj(in_file, out_file)
2208
2209
Kelvin Zhange473ce92023-06-21 13:06:59 -07002210def UnzipSingleFile(input_zip: zipfile.ZipFile, info: zipfile.ZipInfo, dirname: str):
2211 # According to https://stackoverflow.com/questions/434641/how-do-i-set-permissions-attributes-on-a-file-in-a-zip-file-using-pythons-zip/6297838#6297838
2212 # higher bits of |external_attr| are unix file permission and types
2213 unix_filetype = info.external_attr >> 16
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002214 file_perm = unix_filetype & 0o777
Kelvin Zhange473ce92023-06-21 13:06:59 -07002215
2216 def CheckMask(a, mask):
2217 return (a & mask) == mask
2218
2219 def IsSymlink(a):
2220 return CheckMask(a, stat.S_IFLNK)
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002221
2222 def IsDir(a):
2223 return CheckMask(a, stat.S_IFDIR)
Kelvin Zhange473ce92023-06-21 13:06:59 -07002224 # python3.11 zipfile implementation doesn't handle symlink correctly
2225 if not IsSymlink(unix_filetype):
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002226 target = input_zip.extract(info, dirname)
2227 # We want to ensure that the file is at least read/writable by owner and readable by all users
2228 if IsDir(unix_filetype):
2229 os.chmod(target, file_perm | 0o755)
2230 else:
2231 os.chmod(target, file_perm | 0o644)
2232 return target
Kelvin Zhange473ce92023-06-21 13:06:59 -07002233 if dirname is None:
2234 dirname = os.getcwd()
2235 target = os.path.join(dirname, info.filename)
2236 os.makedirs(os.path.dirname(target), exist_ok=True)
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002237 if os.path.exists(target):
2238 os.unlink(target)
Kelvin Zhange473ce92023-06-21 13:06:59 -07002239 os.symlink(input_zip.read(info).decode(), target)
Kelvin Zhang4cb28f62023-07-10 12:30:53 -07002240 return target
Kelvin Zhange473ce92023-06-21 13:06:59 -07002241
2242
Tao Bao0ff15de2019-03-20 11:26:06 -07002243def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002244 """Unzips the archive to the given directory.
2245
2246 Args:
2247 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002248 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07002249 patterns: Files to unzip from the archive. If omitted, will unzip the entire
2250 archvie. Non-matching patterns will be filtered out. If there's no match
2251 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002252 """
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002253 with zipfile.ZipFile(filename, allowZip64=True, mode="r") as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07002254 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang38d0c372023-06-14 12:53:29 -07002255 entries = input_zip.infolist()
2256 # b/283033491
2257 # Per https://en.wikipedia.org/wiki/ZIP_(file_format)#Central_directory_file_header
2258 # In zip64 mode, central directory record's header_offset field might be
2259 # set to 0xFFFFFFFF if header offset is > 2^32. In this case, the extra
2260 # fields will contain an 8 byte little endian integer at offset 20
2261 # to indicate the actual local header offset.
2262 # As of python3.11, python does not handle zip64 central directories
2263 # correctly, so we will manually do the parsing here.
Kelvin Zhang1e774242023-06-17 09:18:15 -07002264
2265 # ZIP64 central directory extra field has two required fields:
2266 # 2 bytes header ID and 2 bytes size field. Thes two require fields have
2267 # a total size of 4 bytes. Then it has three other 8 bytes field, followed
2268 # by a 4 byte disk number field. The last disk number field is not required
2269 # to be present, but if it is present, the total size of extra field will be
2270 # divisible by 8(because 2+2+4+8*n is always going to be multiple of 8)
2271 # Most extra fields are optional, but when they appear, their must appear
2272 # in the order defined by zip64 spec. Since file header offset is the 2nd
2273 # to last field in zip64 spec, it will only be at last 8 bytes or last 12-4
2274 # bytes, depending on whether disk number is present.
Kelvin Zhang38d0c372023-06-14 12:53:29 -07002275 for entry in entries:
Kelvin Zhang1e774242023-06-17 09:18:15 -07002276 if entry.header_offset == 0xFFFFFFFF:
2277 if len(entry.extra) % 8 == 0:
2278 entry.header_offset = int.from_bytes(entry.extra[-12:-4], "little")
2279 else:
2280 entry.header_offset = int.from_bytes(entry.extra[-8:], "little")
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002281 if patterns is not None:
Kelvin Zhang38d0c372023-06-14 12:53:29 -07002282 filtered = [info for info in entries if any(
2283 [fnmatch.fnmatch(info.filename, p) for p in patterns])]
Tao Bao0ff15de2019-03-20 11:26:06 -07002284
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002285 # There isn't any matching files. Don't unzip anything.
2286 if not filtered:
2287 return
Kelvin Zhange473ce92023-06-21 13:06:59 -07002288 for info in filtered:
2289 UnzipSingleFile(input_zip, info, dirname)
Kelvin Zhang7c9205b2023-06-05 09:58:16 -07002290 else:
Kelvin Zhange473ce92023-06-21 13:06:59 -07002291 for info in entries:
2292 UnzipSingleFile(input_zip, info, dirname)
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002293
2294
Daniel Norman78554ea2021-09-14 10:29:38 -07002295def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002296 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002297
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002298 Args:
2299 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2300 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2301
Daniel Norman78554ea2021-09-14 10:29:38 -07002302 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002303 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002304
Tao Bao1c830bf2017-12-25 10:43:47 -08002305 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002306 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002307 """
Doug Zongkereef39442009-04-02 12:14:19 -07002308
Tao Bao1c830bf2017-12-25 10:43:47 -08002309 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002310 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2311 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002312 UnzipToDir(m.group(1), tmp, patterns)
2313 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002314 filename = m.group(1)
2315 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002316 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002317
Tao Baodba59ee2018-01-09 13:21:02 -08002318 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002319
2320
Yifan Hong8a66a712019-04-04 15:37:57 -07002321def GetUserImage(which, tmpdir, input_zip,
2322 info_dict=None,
2323 allow_shared_blocks=None,
Yifan Hong8a66a712019-04-04 15:37:57 -07002324 reset_file_map=False):
2325 """Returns an Image object suitable for passing to BlockImageDiff.
2326
2327 This function loads the specified image from the given path. If the specified
2328 image is sparse, it also performs additional processing for OTA purpose. For
2329 example, it always adds block 0 to clobbered blocks list. It also detects
2330 files that cannot be reconstructed from the block list, for whom we should
2331 avoid applying imgdiff.
2332
2333 Args:
2334 which: The partition name.
2335 tmpdir: The directory that contains the prebuilt image and block map file.
2336 input_zip: The target-files ZIP archive.
2337 info_dict: The dict to be looked up for relevant info.
2338 allow_shared_blocks: If image is sparse, whether having shared blocks is
2339 allowed. If none, it is looked up from info_dict.
Yifan Hong8a66a712019-04-04 15:37:57 -07002340 reset_file_map: If true and image is sparse, reset file map before returning
2341 the image.
2342 Returns:
2343 A Image object. If it is a sparse image and reset_file_map is False, the
2344 image will have file_map info loaded.
2345 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002346 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002347 info_dict = LoadInfoDict(input_zip)
2348
Kelvin Zhang04521282023-03-02 09:42:52 -08002349 is_sparse = IsSparseImage(os.path.join(tmpdir, "IMAGES", which + ".img"))
Yifan Hong8a66a712019-04-04 15:37:57 -07002350
2351 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2352 # shared blocks (i.e. some blocks will show up in multiple files' block
2353 # list). We can only allocate such shared blocks to the first "owner", and
2354 # disable imgdiff for all later occurrences.
2355 if allow_shared_blocks is None:
2356 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2357
2358 if is_sparse:
hungweichencc9c05d2022-08-23 05:45:42 +00002359 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks)
Yifan Hong8a66a712019-04-04 15:37:57 -07002360 if reset_file_map:
2361 img.ResetFileMap()
2362 return img
hungweichencc9c05d2022-08-23 05:45:42 +00002363 return GetNonSparseImage(which, tmpdir)
Yifan Hong8a66a712019-04-04 15:37:57 -07002364
2365
hungweichencc9c05d2022-08-23 05:45:42 +00002366def GetNonSparseImage(which, tmpdir):
Yifan Hong8a66a712019-04-04 15:37:57 -07002367 """Returns a Image object suitable for passing to BlockImageDiff.
2368
2369 This function loads the specified non-sparse image from the given path.
2370
2371 Args:
2372 which: The partition name.
2373 tmpdir: The directory that contains the prebuilt image and block map file.
2374 Returns:
2375 A Image object.
2376 """
2377 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2378 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2379
2380 # The image and map files must have been created prior to calling
2381 # ota_from_target_files.py (since LMP).
2382 assert os.path.exists(path) and os.path.exists(mappath)
2383
hungweichencc9c05d2022-08-23 05:45:42 +00002384 return images.FileImage(path)
Tianjie Xu41976c72019-07-03 13:57:01 -07002385
Yifan Hong8a66a712019-04-04 15:37:57 -07002386
hungweichencc9c05d2022-08-23 05:45:42 +00002387def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks):
Tao Baoc765cca2018-01-31 17:32:40 -08002388 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2389
2390 This function loads the specified sparse image from the given path, and
2391 performs additional processing for OTA purpose. For example, it always adds
2392 block 0 to clobbered blocks list. It also detects files that cannot be
2393 reconstructed from the block list, for whom we should avoid applying imgdiff.
2394
2395 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002396 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002397 tmpdir: The directory that contains the prebuilt image and block map file.
2398 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002399 allow_shared_blocks: Whether having shared blocks is allowed.
Tao Baoc765cca2018-01-31 17:32:40 -08002400 Returns:
2401 A SparseImage object, with file_map info loaded.
2402 """
Tao Baoc765cca2018-01-31 17:32:40 -08002403 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2404 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2405
2406 # The image and map files must have been created prior to calling
2407 # ota_from_target_files.py (since LMP).
2408 assert os.path.exists(path) and os.path.exists(mappath)
2409
2410 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2411 # it to clobbered_blocks so that it will be written to the target
2412 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2413 clobbered_blocks = "0"
2414
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002415 image = sparse_img.SparseImage(
hungweichencc9c05d2022-08-23 05:45:42 +00002416 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks)
Tao Baoc765cca2018-01-31 17:32:40 -08002417
2418 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2419 # if they contain all zeros. We can't reconstruct such a file from its block
2420 # list. Tag such entries accordingly. (Bug: 65213616)
2421 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002422 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002423 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002424 continue
2425
Tom Cherryd14b8952018-08-09 14:26:00 -07002426 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2427 # filename listed in system.map may contain an additional leading slash
2428 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2429 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002430 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002431 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002432 arcname = entry.lstrip('/')
2433 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002434 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002435 else:
2436 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002437
2438 assert arcname in input_zip.namelist(), \
2439 "Failed to find the ZIP entry for {}".format(entry)
2440
Tao Baoc765cca2018-01-31 17:32:40 -08002441 info = input_zip.getinfo(arcname)
2442 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002443
2444 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002445 # image, check the original block list to determine its completeness. Note
2446 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002447 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002448 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002449
Tao Baoc765cca2018-01-31 17:32:40 -08002450 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2451 ranges.extra['incomplete'] = True
2452
2453 return image
2454
2455
Doug Zongkereef39442009-04-02 12:14:19 -07002456def GetKeyPasswords(keylist):
2457 """Given a list of keys, prompt the user to enter passwords for
2458 those which require them. Return a {key: password} dict. password
2459 will be None if the key has no password."""
2460
Doug Zongker8ce7c252009-05-22 13:34:54 -07002461 no_passwords = []
2462 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002463 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002464 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002465
2466 # sorted() can't compare strings to None, so convert Nones to strings
2467 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002468 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002469 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002470 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002471 continue
2472
T.R. Fullhart37e10522013-03-18 10:31:26 -07002473 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002474 "-inform", "DER", "-nocrypt"],
2475 stdin=devnull.fileno(),
2476 stdout=devnull.fileno(),
2477 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002478 p.communicate()
2479 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002480 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002481 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002482 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002483 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2484 "-inform", "DER", "-passin", "pass:"],
2485 stdin=devnull.fileno(),
2486 stdout=devnull.fileno(),
2487 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002488 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002489 if p.returncode == 0:
2490 # Encrypted key with empty string as password.
2491 key_passwords[k] = ''
2492 elif stderr.startswith('Error decrypting key'):
2493 # Definitely encrypted key.
2494 # It would have said "Error reading key" if it didn't parse correctly.
2495 need_passwords.append(k)
2496 else:
2497 # Potentially, a type of key that openssl doesn't understand.
2498 # We'll let the routines in signapk.jar handle it.
2499 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002500 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002501
T.R. Fullhart37e10522013-03-18 10:31:26 -07002502 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002503 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002504 return key_passwords
2505
2506
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002507def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002508 """Gets the minSdkVersion declared in the APK.
2509
Martin Stjernholm58472e82022-01-07 22:08:47 +00002510 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2511 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002512
2513 Args:
2514 apk_name: The APK filename.
2515
2516 Returns:
2517 The parsed SDK version string.
2518
2519 Raises:
2520 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002521 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002522 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002523 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002524 stderr=subprocess.PIPE)
2525 stdoutdata, stderrdata = proc.communicate()
2526 if proc.returncode != 0:
2527 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002528 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2529 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002530
Tao Baof47bf0f2018-03-21 23:28:51 -07002531 for line in stdoutdata.split("\n"):
James Wuc5e321a2023-08-01 17:45:35 +00002532 # Due to ag/24161708, looking for lines such as minSdkVersion:'23',minSdkVersion:'M'
2533 # or sdkVersion:'23', sdkVersion:'M'.
2534 m = re.match(r'(?:minSdkVersion|sdkVersion):\'([^\']*)\'', line)
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002535 if m:
2536 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002537 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002538
2539
2540def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002541 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002542
Tao Baof47bf0f2018-03-21 23:28:51 -07002543 If minSdkVersion is set to a codename, it is translated to a number using the
2544 provided map.
2545
2546 Args:
2547 apk_name: The APK filename.
2548
2549 Returns:
2550 The parsed SDK version number.
2551
2552 Raises:
2553 ExternalError: On failing to get the min SDK version number.
2554 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002555 version = GetMinSdkVersion(apk_name)
2556 try:
2557 return int(version)
2558 except ValueError:
Paul Duffina03f1262023-02-01 12:12:51 +00002559 # Not a decimal number.
2560 #
2561 # It could be either a straight codename, e.g.
2562 # UpsideDownCake
2563 #
2564 # Or a codename with API fingerprint SHA, e.g.
2565 # UpsideDownCake.e7d3947f14eb9dc4fec25ff6c5f8563e
2566 #
2567 # Extract the codename and try and map it to a version number.
2568 split = version.split(".")
2569 codename = split[0]
2570 if codename in codename_to_api_level_map:
2571 return codename_to_api_level_map[codename]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002572 raise ExternalError(
Paul Duffina03f1262023-02-01 12:12:51 +00002573 "Unknown codename: '{}' from minSdkVersion: '{}'. Known codenames: {}".format(
2574 codename, version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002575
2576
2577def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002578 codename_to_api_level_map=None, whole_file=False,
2579 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002580 """Sign the input_name zip/jar/apk, producing output_name. Use the
2581 given key and password (the latter may be None if the key does not
2582 have a password.
2583
Doug Zongker951495f2009-08-14 12:44:19 -07002584 If whole_file is true, use the "-w" option to SignApk to embed a
2585 signature that covers the whole file in the archive comment of the
2586 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002587
2588 min_api_level is the API Level (int) of the oldest platform this file may end
2589 up on. If not specified for an APK, the API Level is obtained by interpreting
2590 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2591
2592 codename_to_api_level_map is needed to translate the codename which may be
2593 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002594
2595 Caller may optionally specify extra args to be passed to SignApk, which
2596 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002597 """
Tao Bao76def242017-11-21 09:25:31 -08002598 if codename_to_api_level_map is None:
2599 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002600 if extra_signapk_args is None:
2601 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002602
Alex Klyubin9667b182015-12-10 13:38:50 -08002603 java_library_path = os.path.join(
2604 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2605
Tao Baoe95540e2016-11-08 12:08:53 -08002606 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2607 ["-Djava.library.path=" + java_library_path,
2608 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002609 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002610 if whole_file:
2611 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002612
2613 min_sdk_version = min_api_level
2614 if min_sdk_version is None:
2615 if not whole_file:
2616 min_sdk_version = GetMinSdkVersionInt(
2617 input_name, codename_to_api_level_map)
2618 if min_sdk_version is not None:
2619 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2620
T.R. Fullhart37e10522013-03-18 10:31:26 -07002621 cmd.extend([key + OPTIONS.public_key_suffix,
2622 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002623 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002624
Tao Bao73dd4f42018-10-04 16:25:33 -07002625 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002626 if password is not None:
2627 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002628 stdoutdata, _ = proc.communicate(password)
2629 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002630 raise ExternalError(
Kelvin Zhang197772f2022-04-26 15:15:11 -07002631 "Failed to run {}: return code {}:\n{}".format(cmd,
Kelvin Zhangf294c872022-10-06 14:21:36 -07002632 proc.returncode, stdoutdata))
2633
Doug Zongkereef39442009-04-02 12:14:19 -07002634
Doug Zongker37974732010-09-16 17:44:38 -07002635def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002636 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002637
Tao Bao9dd909e2017-11-14 11:27:32 -08002638 For non-AVB images, raise exception if the data is too big. Print a warning
2639 if the data is nearing the maximum size.
2640
2641 For AVB images, the actual image size should be identical to the limit.
2642
2643 Args:
2644 data: A string that contains all the data for the partition.
2645 target: The partition name. The ".img" suffix is optional.
2646 info_dict: The dict to be looked up for relevant info.
2647 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002648 if target.endswith(".img"):
2649 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002650 mount_point = "/" + target
2651
Ying Wangf8824af2014-06-03 14:07:27 -07002652 fs_type = None
2653 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002654 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002655 if mount_point == "/userdata":
2656 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002657 p = info_dict["fstab"][mount_point]
2658 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002659 device = p.device
2660 if "/" in device:
2661 device = device[device.rfind("/")+1:]
Kelvin Zhang8c9166a2023-10-31 13:42:15 -07002662 limit = info_dict.get(device + "_size", 0)
2663 if isinstance(limit, str):
2664 limit = int(limit, 0)
Dan Albert8b72aef2015-03-23 19:13:21 -07002665 if not fs_type or not limit:
2666 return
Doug Zongkereef39442009-04-02 12:14:19 -07002667
Andrew Boie0f9aec82012-02-14 09:32:52 -08002668 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002669 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2670 # path.
2671 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2672 if size != limit:
2673 raise ExternalError(
2674 "Mismatching image size for %s: expected %d actual %d" % (
2675 target, limit, size))
2676 else:
2677 pct = float(size) * 100.0 / limit
2678 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2679 if pct >= 99.0:
2680 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002681
2682 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002683 logger.warning("\n WARNING: %s\n", msg)
2684 else:
2685 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002686
2687
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002688def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002689 """Parses the APK certs info from a given target-files zip.
2690
2691 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2692 tuple with the following elements: (1) a dictionary that maps packages to
2693 certs (based on the "certificate" and "private_key" attributes in the file;
2694 (2) a string representing the extension of compressed APKs in the target files
2695 (e.g ".gz", ".bro").
2696
2697 Args:
2698 tf_zip: The input target_files ZipFile (already open).
2699
2700 Returns:
2701 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2702 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2703 no compressed APKs.
2704 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002705 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002706 compressed_extension = None
2707
Tao Bao0f990332017-09-08 19:02:54 -07002708 # META/apkcerts.txt contains the info for _all_ the packages known at build
2709 # time. Filter out the ones that are not installed.
2710 installed_files = set()
2711 for name in tf_zip.namelist():
2712 basename = os.path.basename(name)
2713 if basename:
2714 installed_files.add(basename)
2715
Tao Baoda30cfa2017-12-01 16:19:46 -08002716 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002717 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002718 if not line:
2719 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002720 m = re.match(
2721 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002722 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2723 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002724 line)
2725 if not m:
2726 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002727
Tao Bao818ddf52018-01-05 11:17:34 -08002728 matches = m.groupdict()
2729 cert = matches["CERT"]
2730 privkey = matches["PRIVKEY"]
2731 name = matches["NAME"]
2732 this_compressed_extension = matches["COMPRESSED"]
2733
2734 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2735 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2736 if cert in SPECIAL_CERT_STRINGS and not privkey:
2737 certmap[name] = cert
2738 elif (cert.endswith(OPTIONS.public_key_suffix) and
2739 privkey.endswith(OPTIONS.private_key_suffix) and
2740 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2741 certmap[name] = cert[:-public_key_suffix_len]
2742 else:
2743 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2744
2745 if not this_compressed_extension:
2746 continue
2747
2748 # Only count the installed files.
2749 filename = name + '.' + this_compressed_extension
2750 if filename not in installed_files:
2751 continue
2752
2753 # Make sure that all the values in the compression map have the same
2754 # extension. We don't support multiple compression methods in the same
2755 # system image.
2756 if compressed_extension:
2757 if this_compressed_extension != compressed_extension:
2758 raise ValueError(
2759 "Multiple compressed extensions: {} vs {}".format(
2760 compressed_extension, this_compressed_extension))
2761 else:
2762 compressed_extension = this_compressed_extension
2763
2764 return (certmap,
2765 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002766
2767
Doug Zongkereef39442009-04-02 12:14:19 -07002768COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002769Global options
2770
2771 -p (--path) <dir>
2772 Prepend <dir>/bin to the list of places to search for binaries run by this
2773 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002774
Doug Zongker05d3dea2009-06-22 11:32:31 -07002775 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002776 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002777
Tao Bao30df8b42018-04-23 15:32:53 -07002778 -x (--extra) <key=value>
2779 Add a key/value pair to the 'extras' dict, which device-specific extension
2780 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002781
Doug Zongkereef39442009-04-02 12:14:19 -07002782 -v (--verbose)
2783 Show command lines being executed.
2784
2785 -h (--help)
2786 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002787
2788 --logfile <file>
2789 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002790"""
2791
Kelvin Zhang0876c412020-06-23 15:06:58 -04002792
Doug Zongkereef39442009-04-02 12:14:19 -07002793def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002794 print(docstring.rstrip("\n"))
2795 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002796
2797
2798def ParseOptions(argv,
2799 docstring,
2800 extra_opts="", extra_long_opts=(),
Kelvin Zhangc68c6b92023-11-14 10:54:50 -08002801 extra_option_handler: Iterable[OptionHandler] = None):
Doug Zongkereef39442009-04-02 12:14:19 -07002802 """Parse the options in argv and return any arguments that aren't
2803 flags. docstring is the calling module's docstring, to be displayed
2804 for errors and -h. extra_opts and extra_long_opts are for flags
2805 defined by the caller, which are processed by passing them to
2806 extra_option_handler."""
Kelvin Zhangc68c6b92023-11-14 10:54:50 -08002807 extra_long_opts = list(extra_long_opts)
2808 if not isinstance(extra_option_handler, Iterable):
2809 extra_option_handler = [extra_option_handler]
2810
2811 for handler in extra_option_handler:
2812 if isinstance(handler, OptionHandler):
2813 extra_long_opts.extend(handler.extra_long_opts)
Doug Zongkereef39442009-04-02 12:14:19 -07002814
2815 try:
2816 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002817 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002818 ["help", "verbose", "path=", "signapk_path=",
Thiébaud Weksteen62865ca2023-10-18 11:08:47 +11002819 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002820 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002821 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2822 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002823 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002824 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002825 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002826 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002827 sys.exit(2)
2828
Doug Zongkereef39442009-04-02 12:14:19 -07002829 for o, a in opts:
2830 if o in ("-h", "--help"):
2831 Usage(docstring)
2832 sys.exit()
2833 elif o in ("-v", "--verbose"):
2834 OPTIONS.verbose = True
2835 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002836 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002837 elif o in ("--signapk_path",):
2838 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002839 elif o in ("--signapk_shared_library_path",):
2840 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002841 elif o in ("--extra_signapk_args",):
2842 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002843 elif o in ("--aapt2_path",):
2844 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002845 elif o in ("--java_path",):
2846 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002847 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002848 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002849 elif o in ("--android_jar_path",):
2850 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002851 elif o in ("--public_key_suffix",):
2852 OPTIONS.public_key_suffix = a
2853 elif o in ("--private_key_suffix",):
2854 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002855 elif o in ("--boot_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002856 raise ValueError(
2857 "--boot_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002858 elif o in ("--boot_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002859 raise ValueError(
2860 "--boot_signer_args is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002861 elif o in ("--verity_signer_path",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002862 raise ValueError(
2863 "--verity_signer_path is no longer supported, please switch to AVB")
Baligh Uddin601ddea2015-06-09 15:48:14 -07002864 elif o in ("--verity_signer_args",):
Kelvin Zhangf294c872022-10-06 14:21:36 -07002865 raise ValueError(
2866 "--verity_signer_args is no longer supported, please switch to AVB")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002867 elif o in ("-s", "--device_specific"):
2868 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002869 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002870 key, value = a.split("=", 1)
2871 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002872 elif o in ("--logfile",):
2873 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002874 else:
Kelvin Zhangc68c6b92023-11-14 10:54:50 -08002875 if extra_option_handler is None:
2876 raise ValueError("unknown option \"%s\"" % (o,))
2877 success = False
2878 for handler in extra_option_handler:
2879 if isinstance(handler, OptionHandler):
2880 if handler.handler(o, a):
2881 success = True
2882 break
2883 elif handler(o, a):
2884 success = True
2885 if not success:
2886 raise ValueError("unknown option \"%s\"" % (o,))
2887
Doug Zongkereef39442009-04-02 12:14:19 -07002888
Doug Zongker85448772014-09-09 14:59:20 -07002889 if OPTIONS.search_path:
2890 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2891 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002892
2893 return args
2894
2895
Tao Bao4c851b12016-09-19 13:54:38 -07002896def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002897 """Make a temp file and add it to the list of things to be deleted
2898 when Cleanup() is called. Return the filename."""
2899 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2900 os.close(fd)
2901 OPTIONS.tempfiles.append(fn)
2902 return fn
2903
2904
Tao Bao1c830bf2017-12-25 10:43:47 -08002905def MakeTempDir(prefix='tmp', suffix=''):
2906 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2907
2908 Returns:
2909 The absolute pathname of the new directory.
2910 """
2911 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2912 OPTIONS.tempfiles.append(dir_name)
2913 return dir_name
2914
2915
Doug Zongkereef39442009-04-02 12:14:19 -07002916def Cleanup():
2917 for i in OPTIONS.tempfiles:
Kelvin Zhang22680912023-05-19 13:12:59 -07002918 if not os.path.exists(i):
2919 continue
Doug Zongkereef39442009-04-02 12:14:19 -07002920 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002921 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002922 else:
2923 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002924 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002925
2926
2927class PasswordManager(object):
2928 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002929 self.editor = os.getenv("EDITOR")
2930 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002931
2932 def GetPasswords(self, items):
2933 """Get passwords corresponding to each string in 'items',
2934 returning a dict. (The dict may have keys in addition to the
2935 values in 'items'.)
2936
2937 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2938 user edit that file to add more needed passwords. If no editor is
2939 available, or $ANDROID_PW_FILE isn't define, prompts the user
2940 interactively in the ordinary way.
2941 """
2942
2943 current = self.ReadFile()
2944
2945 first = True
2946 while True:
2947 missing = []
2948 for i in items:
2949 if i not in current or not current[i]:
2950 missing.append(i)
2951 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002952 if not missing:
2953 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002954
2955 for i in missing:
2956 current[i] = ""
2957
2958 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002959 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002960 if sys.version_info[0] >= 3:
2961 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002962 answer = raw_input("try to edit again? [y]> ").strip()
2963 if answer and answer[0] not in 'yY':
2964 raise RuntimeError("key passwords unavailable")
2965 first = False
2966
2967 current = self.UpdateAndReadFile(current)
2968
Kelvin Zhang0876c412020-06-23 15:06:58 -04002969 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002970 """Prompt the user to enter a value (password) for each key in
2971 'current' whose value is fales. Returns a new dict with all the
2972 values.
2973 """
2974 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002975 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002976 if v:
2977 result[k] = v
2978 else:
2979 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002980 result[k] = getpass.getpass(
2981 "Enter password for %s key> " % k).strip()
2982 if result[k]:
2983 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002984 return result
2985
2986 def UpdateAndReadFile(self, current):
2987 if not self.editor or not self.pwfile:
2988 return self.PromptResult(current)
2989
2990 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002991 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002992 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2993 f.write("# (Additional spaces are harmless.)\n\n")
2994
2995 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002996 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002997 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002998 f.write("[[[ %s ]]] %s\n" % (v, k))
2999 if not v and first_line is None:
3000 # position cursor on first line with no password.
3001 first_line = i + 4
3002 f.close()
3003
Tao Bao986ee862018-10-04 15:46:16 -07003004 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07003005
3006 return self.ReadFile()
3007
3008 def ReadFile(self):
3009 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07003010 if self.pwfile is None:
3011 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07003012 try:
3013 f = open(self.pwfile, "r")
3014 for line in f:
3015 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07003016 if not line or line[0] == '#':
3017 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07003018 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
3019 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07003020 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07003021 else:
3022 result[m.group(2)] = m.group(1)
3023 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07003024 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07003025 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07003026 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07003027 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07003028
3029
Dan Albert8e0178d2015-01-27 15:53:15 -08003030def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
3031 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08003032
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003033 # http://b/18015246
3034 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
3035 # for files larger than 2GiB. We can work around this by adjusting their
3036 # limit. Note that `zipfile.writestr()` will not work for strings larger than
3037 # 2GiB. The Python interpreter sometimes rejects strings that large (though
3038 # it isn't clear to me exactly what circumstances cause this).
3039 # `zipfile.write()` must be used directly to work around this.
3040 #
3041 # This mess can be avoided if we port to python3.
3042 saved_zip64_limit = zipfile.ZIP64_LIMIT
3043 zipfile.ZIP64_LIMIT = (1 << 32) - 1
3044
Dan Albert8e0178d2015-01-27 15:53:15 -08003045 if compress_type is None:
3046 compress_type = zip_file.compression
3047 if arcname is None:
3048 arcname = filename
3049
3050 saved_stat = os.stat(filename)
3051
3052 try:
3053 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
3054 # file to be zipped and reset it when we're done.
3055 os.chmod(filename, perms)
3056
3057 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07003058 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
3059 # intentional. zip stores datetimes in local time without a time zone
3060 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
3061 # in the zip archive.
3062 local_epoch = datetime.datetime.fromtimestamp(0)
3063 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08003064 os.utime(filename, (timestamp, timestamp))
3065
3066 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
3067 finally:
3068 os.chmod(filename, saved_stat.st_mode)
3069 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003070 zipfile.ZIP64_LIMIT = saved_zip64_limit
Dan Albert8e0178d2015-01-27 15:53:15 -08003071
3072
Tao Bao58c1b962015-05-20 09:32:18 -07003073def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07003074 compress_type=None):
3075 """Wrap zipfile.writestr() function to work around the zip64 limit.
3076
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003077 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
Tao Baof3282b42015-04-01 11:21:55 -07003078 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
3079 when calling crc32(bytes).
3080
3081 But it still works fine to write a shorter string into a large zip file.
3082 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
3083 when we know the string won't be too long.
3084 """
3085
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003086 saved_zip64_limit = zipfile.ZIP64_LIMIT
3087 zipfile.ZIP64_LIMIT = (1 << 32) - 1
3088
Tao Baof3282b42015-04-01 11:21:55 -07003089 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
3090 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07003091 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07003092 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07003093 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08003094 else:
Tao Baof3282b42015-04-01 11:21:55 -07003095 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07003096 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
3097 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
3098 # such a case (since
3099 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
3100 # which seems to make more sense. Otherwise the entry will have 0o000 as the
3101 # permission bits. We follow the logic in Python 3 to get consistent
3102 # behavior between using the two versions.
3103 if not zinfo.external_attr:
3104 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07003105
3106 # If compress_type is given, it overrides the value in zinfo.
3107 if compress_type is not None:
3108 zinfo.compress_type = compress_type
3109
Tao Bao58c1b962015-05-20 09:32:18 -07003110 # If perms is given, it has a priority.
3111 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07003112 # If perms doesn't set the file type, mark it as a regular file.
3113 if perms & 0o770000 == 0:
3114 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07003115 zinfo.external_attr = perms << 16
3116
Tao Baof3282b42015-04-01 11:21:55 -07003117 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07003118 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
3119
Dan Albert8b72aef2015-03-23 19:13:21 -07003120 zip_file.writestr(zinfo, data)
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003121 zipfile.ZIP64_LIMIT = saved_zip64_limit
Tao Baof3282b42015-04-01 11:21:55 -07003122
Kelvin Zhangb84d2aa2023-11-06 10:53:41 -08003123def ZipExclude(input_zip, output_zip, entries, force=False):
3124 """Deletes entries from a ZIP file.
3125
3126 Args:
3127 zip_filename: The name of the ZIP file.
3128 entries: The name of the entry, or the list of names to be deleted.
3129 """
3130 if isinstance(entries, str):
3131 entries = [entries]
3132 # If list is empty, nothing to do
3133 if not entries:
3134 shutil.copy(input_zip, output_zip)
3135 return
3136
3137 with zipfile.ZipFile(input_zip, 'r') as zin:
3138 if not force and len(set(zin.namelist()).intersection(entries)) == 0:
3139 raise ExternalError(
3140 "Failed to delete zip entries, name not matched: %s" % entries)
3141
3142 fd, new_zipfile = tempfile.mkstemp(dir=os.path.dirname(input_zip))
3143 os.close(fd)
3144 cmd = ["zip2zip", "-i", input_zip, "-o", new_zipfile]
3145 for entry in entries:
3146 cmd.append("-x")
3147 cmd.append(entry)
3148 RunAndCheckOutput(cmd)
3149 os.replace(new_zipfile, output_zip)
3150
Tao Baof3282b42015-04-01 11:21:55 -07003151
Kelvin Zhang1caead02022-09-23 10:06:03 -07003152def ZipDelete(zip_filename, entries, force=False):
Tao Bao89d7ab22017-12-14 17:05:33 -08003153 """Deletes entries from a ZIP file.
3154
Tao Bao89d7ab22017-12-14 17:05:33 -08003155 Args:
3156 zip_filename: The name of the ZIP file.
3157 entries: The name of the entry, or the list of names to be deleted.
Tao Bao89d7ab22017-12-14 17:05:33 -08003158 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07003159 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08003160 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08003161 # If list is empty, nothing to do
3162 if not entries:
3163 return
Wei Li8895f9e2022-10-10 17:13:17 -07003164
Kelvin Zhangb84d2aa2023-11-06 10:53:41 -08003165 ZipExclude(zip_filename, zip_filename, entries, force)
Tao Bao89d7ab22017-12-14 17:05:33 -08003166
3167
Kelvin Zhangf92f7f02023-04-14 21:32:54 +00003168def ZipClose(zip_file):
3169 # http://b/18015246
3170 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
3171 # central directory.
3172 saved_zip64_limit = zipfile.ZIP64_LIMIT
3173 zipfile.ZIP64_LIMIT = (1 << 32) - 1
3174
3175 zip_file.close()
3176
3177 zipfile.ZIP64_LIMIT = saved_zip64_limit
3178
3179
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003180class DeviceSpecificParams(object):
3181 module = None
3182
3183 def __init__(self, **kwargs):
3184 """Keyword arguments to the constructor become attributes of this
3185 object, which is passed to all functions in the device-specific
3186 module."""
3187 for k, v in kwargs.items():
3188 setattr(self, k, v)
3189 self.extras = OPTIONS.extras
3190
3191 if self.module is None:
3192 path = OPTIONS.device_specific
3193 if not path:
3194 return
3195 try:
3196 if os.path.isdir(path):
3197 info = imp.find_module("releasetools", [path])
3198 else:
3199 d, f = os.path.split(path)
3200 b, x = os.path.splitext(f)
3201 if x == ".py":
3202 f = b
3203 info = imp.find_module(f, [d])
3204 logger.info("loaded device-specific extensions from %s", path)
3205 self.module = imp.load_module("device_specific", *info)
3206 except ImportError:
3207 logger.info("unable to load device-specific module; assuming none")
3208
3209 def _DoCall(self, function_name, *args, **kwargs):
3210 """Call the named function in the device-specific module, passing
3211 the given args and kwargs. The first argument to the call will be
3212 the DeviceSpecific object itself. If there is no module, or the
3213 module does not define the function, return the value of the
3214 'default' kwarg (which itself defaults to None)."""
3215 if self.module is None or not hasattr(self.module, function_name):
3216 return kwargs.get("default")
3217 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
3218
3219 def FullOTA_Assertions(self):
3220 """Called after emitting the block of assertions at the top of a
3221 full OTA package. Implementations can add whatever additional
3222 assertions they like."""
3223 return self._DoCall("FullOTA_Assertions")
3224
3225 def FullOTA_InstallBegin(self):
3226 """Called at the start of full OTA installation."""
3227 return self._DoCall("FullOTA_InstallBegin")
3228
3229 def FullOTA_GetBlockDifferences(self):
3230 """Called during full OTA installation and verification.
3231 Implementation should return a list of BlockDifference objects describing
3232 the update on each additional partitions.
3233 """
3234 return self._DoCall("FullOTA_GetBlockDifferences")
3235
3236 def FullOTA_InstallEnd(self):
3237 """Called at the end of full OTA installation; typically this is
3238 used to install the image for the device's baseband processor."""
3239 return self._DoCall("FullOTA_InstallEnd")
3240
3241 def IncrementalOTA_Assertions(self):
3242 """Called after emitting the block of assertions at the top of an
3243 incremental OTA package. Implementations can add whatever
3244 additional assertions they like."""
3245 return self._DoCall("IncrementalOTA_Assertions")
3246
3247 def IncrementalOTA_VerifyBegin(self):
3248 """Called at the start of the verification phase of incremental
3249 OTA installation; additional checks can be placed here to abort
3250 the script before any changes are made."""
3251 return self._DoCall("IncrementalOTA_VerifyBegin")
3252
3253 def IncrementalOTA_VerifyEnd(self):
3254 """Called at the end of the verification phase of incremental OTA
3255 installation; additional checks can be placed here to abort the
3256 script before any changes are made."""
3257 return self._DoCall("IncrementalOTA_VerifyEnd")
3258
3259 def IncrementalOTA_InstallBegin(self):
3260 """Called at the start of incremental OTA installation (after
3261 verification is complete)."""
3262 return self._DoCall("IncrementalOTA_InstallBegin")
3263
3264 def IncrementalOTA_GetBlockDifferences(self):
3265 """Called during incremental OTA installation and verification.
3266 Implementation should return a list of BlockDifference objects describing
3267 the update on each additional partitions.
3268 """
3269 return self._DoCall("IncrementalOTA_GetBlockDifferences")
3270
3271 def IncrementalOTA_InstallEnd(self):
3272 """Called at the end of incremental OTA installation; typically
3273 this is used to install the image for the device's baseband
3274 processor."""
3275 return self._DoCall("IncrementalOTA_InstallEnd")
3276
3277 def VerifyOTA_Assertions(self):
3278 return self._DoCall("VerifyOTA_Assertions")
3279
3280
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003281class File(object):
Tao Bao76def242017-11-21 09:25:31 -08003282 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003283 self.name = name
3284 self.data = data
3285 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09003286 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08003287 self.sha1 = sha1(data).hexdigest()
3288
3289 @classmethod
3290 def FromLocalFile(cls, name, diskname):
3291 f = open(diskname, "rb")
3292 data = f.read()
3293 f.close()
3294 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003295
3296 def WriteToTemp(self):
3297 t = tempfile.NamedTemporaryFile()
3298 t.write(self.data)
3299 t.flush()
3300 return t
3301
Dan Willemsen2ee00d52017-03-05 19:51:56 -08003302 def WriteToDir(self, d):
3303 with open(os.path.join(d, self.name), "wb") as fp:
3304 fp.write(self.data)
3305
Geremy Condra36bd3652014-02-06 19:45:10 -08003306 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07003307 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003308
Tao Bao76def242017-11-21 09:25:31 -08003309
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003310DIFF_PROGRAM_BY_EXT = {
3311 ".gz": "imgdiff",
3312 ".zip": ["imgdiff", "-z"],
3313 ".jar": ["imgdiff", "-z"],
3314 ".apk": ["imgdiff", "-z"],
3315 ".img": "imgdiff",
3316}
3317
3318
3319class Difference(object):
3320 def __init__(self, tf, sf, diff_program=None):
3321 self.tf = tf
3322 self.sf = sf
3323 self.patch = None
3324 self.diff_program = diff_program
3325
3326 def ComputePatch(self):
3327 """Compute the patch (as a string of data) needed to turn sf into
3328 tf. Returns the same tuple as GetPatch()."""
3329
3330 tf = self.tf
3331 sf = self.sf
3332
3333 if self.diff_program:
3334 diff_program = self.diff_program
3335 else:
3336 ext = os.path.splitext(tf.name)[1]
3337 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
3338
3339 ttemp = tf.WriteToTemp()
3340 stemp = sf.WriteToTemp()
3341
3342 ext = os.path.splitext(tf.name)[1]
3343
3344 try:
3345 ptemp = tempfile.NamedTemporaryFile()
3346 if isinstance(diff_program, list):
3347 cmd = copy.copy(diff_program)
3348 else:
3349 cmd = [diff_program]
3350 cmd.append(stemp.name)
3351 cmd.append(ttemp.name)
3352 cmd.append(ptemp.name)
3353 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3354 err = []
3355
3356 def run():
3357 _, e = p.communicate()
3358 if e:
3359 err.append(e)
3360 th = threading.Thread(target=run)
3361 th.start()
3362 th.join(timeout=300) # 5 mins
3363 if th.is_alive():
3364 logger.warning("diff command timed out")
3365 p.terminate()
3366 th.join(5)
3367 if th.is_alive():
3368 p.kill()
3369 th.join()
3370
3371 if p.returncode != 0:
3372 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
3373 self.patch = None
3374 return None, None, None
3375 diff = ptemp.read()
3376 finally:
3377 ptemp.close()
3378 stemp.close()
3379 ttemp.close()
3380
3381 self.patch = diff
3382 return self.tf, self.sf, self.patch
3383
3384 def GetPatch(self):
3385 """Returns a tuple of (target_file, source_file, patch_data).
3386
3387 patch_data may be None if ComputePatch hasn't been called, or if
3388 computing the patch failed.
3389 """
3390 return self.tf, self.sf, self.patch
3391
3392
3393def ComputeDifferences(diffs):
3394 """Call ComputePatch on all the Difference objects in 'diffs'."""
3395 logger.info("%d diffs to compute", len(diffs))
3396
3397 # Do the largest files first, to try and reduce the long-pole effect.
3398 by_size = [(i.tf.size, i) for i in diffs]
3399 by_size.sort(reverse=True)
3400 by_size = [i[1] for i in by_size]
3401
3402 lock = threading.Lock()
3403 diff_iter = iter(by_size) # accessed under lock
3404
3405 def worker():
3406 try:
3407 lock.acquire()
3408 for d in diff_iter:
3409 lock.release()
3410 start = time.time()
3411 d.ComputePatch()
3412 dur = time.time() - start
3413 lock.acquire()
3414
3415 tf, sf, patch = d.GetPatch()
3416 if sf.name == tf.name:
3417 name = tf.name
3418 else:
3419 name = "%s (%s)" % (tf.name, sf.name)
3420 if patch is None:
3421 logger.error("patching failed! %40s", name)
3422 else:
3423 logger.info(
3424 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3425 tf.size, 100.0 * len(patch) / tf.size, name)
3426 lock.release()
3427 except Exception:
3428 logger.exception("Failed to compute diff from worker")
3429 raise
3430
3431 # start worker threads; wait for them all to finish.
3432 threads = [threading.Thread(target=worker)
3433 for i in range(OPTIONS.worker_threads)]
3434 for th in threads:
3435 th.start()
3436 while threads:
3437 threads.pop().join()
3438
3439
3440class BlockDifference(object):
3441 def __init__(self, partition, tgt, src=None, check_first_block=False,
3442 version=None, disable_imgdiff=False):
3443 self.tgt = tgt
3444 self.src = src
3445 self.partition = partition
3446 self.check_first_block = check_first_block
3447 self.disable_imgdiff = disable_imgdiff
3448
3449 if version is None:
3450 version = max(
3451 int(i) for i in
3452 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
3453 assert version >= 3
3454 self.version = version
3455
3456 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3457 version=self.version,
3458 disable_imgdiff=self.disable_imgdiff)
3459 self.path = os.path.join(MakeTempDir(), partition)
3460 b.Compute(self.path)
3461 self._required_cache = b.max_stashed_size
3462 self.touched_src_ranges = b.touched_src_ranges
3463 self.touched_src_sha1 = b.touched_src_sha1
3464
3465 # On devices with dynamic partitions, for new partitions,
3466 # src is None but OPTIONS.source_info_dict is not.
3467 if OPTIONS.source_info_dict is None:
3468 is_dynamic_build = OPTIONS.info_dict.get(
3469 "use_dynamic_partitions") == "true"
3470 is_dynamic_source = False
3471 else:
3472 is_dynamic_build = OPTIONS.source_info_dict.get(
3473 "use_dynamic_partitions") == "true"
3474 is_dynamic_source = partition in shlex.split(
3475 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
3476
3477 is_dynamic_target = partition in shlex.split(
3478 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3479
3480 # For dynamic partitions builds, check partition list in both source
3481 # and target build because new partitions may be added, and existing
3482 # partitions may be removed.
3483 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3484
3485 if is_dynamic:
3486 self.device = 'map_partition("%s")' % partition
3487 else:
3488 if OPTIONS.source_info_dict is None:
3489 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3490 OPTIONS.info_dict)
3491 else:
3492 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3493 OPTIONS.source_info_dict)
3494 self.device = device_expr
3495
3496 @property
3497 def required_cache(self):
3498 return self._required_cache
3499
3500 def WriteScript(self, script, output_zip, progress=None,
3501 write_verify_script=False):
3502 if not self.src:
3503 # write the output unconditionally
3504 script.Print("Patching %s image unconditionally..." % (self.partition,))
3505 else:
3506 script.Print("Patching %s image after verification." % (self.partition,))
3507
3508 if progress:
3509 script.ShowProgress(progress, 0)
3510 self._WriteUpdate(script, output_zip)
3511
3512 if write_verify_script:
3513 self.WritePostInstallVerifyScript(script)
3514
3515 def WriteStrictVerifyScript(self, script):
3516 """Verify all the blocks in the care_map, including clobbered blocks.
3517
3518 This differs from the WriteVerifyScript() function: a) it prints different
3519 error messages; b) it doesn't allow half-way updated images to pass the
3520 verification."""
3521
3522 partition = self.partition
3523 script.Print("Verifying %s..." % (partition,))
3524 ranges = self.tgt.care_map
3525 ranges_str = ranges.to_string_raw()
3526 script.AppendExtra(
3527 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3528 'ui_print("%s has unexpected contents.");' % (
3529 self.device, ranges_str,
3530 self.tgt.TotalSha1(include_clobbered_blocks=True),
3531 self.partition))
3532 script.AppendExtra("")
3533
3534 def WriteVerifyScript(self, script, touched_blocks_only=False):
3535 partition = self.partition
3536
3537 # full OTA
3538 if not self.src:
3539 script.Print("Image %s will be patched unconditionally." % (partition,))
3540
3541 # incremental OTA
3542 else:
3543 if touched_blocks_only:
3544 ranges = self.touched_src_ranges
3545 expected_sha1 = self.touched_src_sha1
3546 else:
3547 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3548 expected_sha1 = self.src.TotalSha1()
3549
3550 # No blocks to be checked, skipping.
3551 if not ranges:
3552 return
3553
3554 ranges_str = ranges.to_string_raw()
3555 script.AppendExtra(
3556 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
3557 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3558 '"%s.patch.dat")) then' % (
3559 self.device, ranges_str, expected_sha1,
3560 self.device, partition, partition, partition))
3561 script.Print('Verified %s image...' % (partition,))
3562 script.AppendExtra('else')
3563
3564 if self.version >= 4:
3565
3566 # Bug: 21124327
3567 # When generating incrementals for the system and vendor partitions in
3568 # version 4 or newer, explicitly check the first block (which contains
3569 # the superblock) of the partition to see if it's what we expect. If
3570 # this check fails, give an explicit log message about the partition
3571 # having been remounted R/W (the most likely explanation).
3572 if self.check_first_block:
3573 script.AppendExtra('check_first_block(%s);' % (self.device,))
3574
3575 # If version >= 4, try block recovery before abort update
3576 if partition == "system":
3577 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3578 else:
3579 code = ErrorCode.VENDOR_RECOVER_FAILURE
3580 script.AppendExtra((
3581 'ifelse (block_image_recover({device}, "{ranges}") && '
3582 'block_image_verify({device}, '
3583 'package_extract_file("{partition}.transfer.list"), '
3584 '"{partition}.new.dat", "{partition}.patch.dat"), '
3585 'ui_print("{partition} recovered successfully."), '
3586 'abort("E{code}: {partition} partition fails to recover"));\n'
3587 'endif;').format(device=self.device, ranges=ranges_str,
3588 partition=partition, code=code))
3589
3590 # Abort the OTA update. Note that the incremental OTA cannot be applied
3591 # even if it may match the checksum of the target partition.
3592 # a) If version < 3, operations like move and erase will make changes
3593 # unconditionally and damage the partition.
3594 # b) If version >= 3, it won't even reach here.
3595 else:
3596 if partition == "system":
3597 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3598 else:
3599 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3600 script.AppendExtra((
3601 'abort("E%d: %s partition has unexpected contents");\n'
3602 'endif;') % (code, partition))
3603
3604 def WritePostInstallVerifyScript(self, script):
3605 partition = self.partition
3606 script.Print('Verifying the updated %s image...' % (partition,))
3607 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3608 ranges = self.tgt.care_map
3609 ranges_str = ranges.to_string_raw()
3610 script.AppendExtra(
3611 'if range_sha1(%s, "%s") == "%s" then' % (
3612 self.device, ranges_str,
3613 self.tgt.TotalSha1(include_clobbered_blocks=True)))
3614
3615 # Bug: 20881595
3616 # Verify that extended blocks are really zeroed out.
3617 if self.tgt.extended:
3618 ranges_str = self.tgt.extended.to_string_raw()
3619 script.AppendExtra(
3620 'if range_sha1(%s, "%s") == "%s" then' % (
3621 self.device, ranges_str,
3622 self._HashZeroBlocks(self.tgt.extended.size())))
3623 script.Print('Verified the updated %s image.' % (partition,))
3624 if partition == "system":
3625 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3626 else:
3627 code = ErrorCode.VENDOR_NONZERO_CONTENTS
3628 script.AppendExtra(
3629 'else\n'
3630 ' abort("E%d: %s partition has unexpected non-zero contents after '
3631 'OTA update");\n'
3632 'endif;' % (code, partition))
3633 else:
3634 script.Print('Verified the updated %s image.' % (partition,))
3635
3636 if partition == "system":
3637 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3638 else:
3639 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3640
3641 script.AppendExtra(
3642 'else\n'
3643 ' abort("E%d: %s partition has unexpected contents after OTA '
3644 'update");\n'
3645 'endif;' % (code, partition))
3646
3647 def _WriteUpdate(self, script, output_zip):
3648 ZipWrite(output_zip,
3649 '{}.transfer.list'.format(self.path),
3650 '{}.transfer.list'.format(self.partition))
3651
3652 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3653 # its size. Quailty 9 almost triples the compression time but doesn't
3654 # further reduce the size too much. For a typical 1.8G system.new.dat
3655 # zip | brotli(quality 6) | brotli(quality 9)
3656 # compressed_size: 942M | 869M (~8% reduced) | 854M
3657 # compression_time: 75s | 265s | 719s
3658 # decompression_time: 15s | 25s | 25s
3659
3660 if not self.src:
3661 brotli_cmd = ['brotli', '--quality=6',
3662 '--output={}.new.dat.br'.format(self.path),
3663 '{}.new.dat'.format(self.path)]
3664 print("Compressing {}.new.dat with brotli".format(self.partition))
3665 RunAndCheckOutput(brotli_cmd)
3666
3667 new_data_name = '{}.new.dat.br'.format(self.partition)
3668 ZipWrite(output_zip,
3669 '{}.new.dat.br'.format(self.path),
3670 new_data_name,
3671 compress_type=zipfile.ZIP_STORED)
3672 else:
3673 new_data_name = '{}.new.dat'.format(self.partition)
3674 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3675
3676 ZipWrite(output_zip,
3677 '{}.patch.dat'.format(self.path),
3678 '{}.patch.dat'.format(self.partition),
3679 compress_type=zipfile.ZIP_STORED)
3680
3681 if self.partition == "system":
3682 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3683 else:
3684 code = ErrorCode.VENDOR_UPDATE_FAILURE
3685
3686 call = ('block_image_update({device}, '
3687 'package_extract_file("{partition}.transfer.list"), '
3688 '"{new_data_name}", "{partition}.patch.dat") ||\n'
3689 ' abort("E{code}: Failed to update {partition} image.");'.format(
3690 device=self.device, partition=self.partition,
3691 new_data_name=new_data_name, code=code))
3692 script.AppendExtra(script.WordWrap(call))
3693
3694 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
3695 data = source.ReadRangeSet(ranges)
3696 ctx = sha1()
3697
3698 for p in data:
3699 ctx.update(p)
3700
3701 return ctx.hexdigest()
3702
3703 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
3704 """Return the hash value for all zero blocks."""
3705 zero_block = '\x00' * 4096
3706 ctx = sha1()
3707 for _ in range(num_blocks):
3708 ctx.update(zero_block)
3709
3710 return ctx.hexdigest()
3711
3712
Tianjie Xu41976c72019-07-03 13:57:01 -07003713# Expose these two classes to support vendor-specific scripts
3714DataImage = images.DataImage
3715EmptyImage = images.EmptyImage
3716
Tao Bao76def242017-11-21 09:25:31 -08003717
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003718# map recovery.fstab's fs_types to mount/format "partition types"
3719PARTITION_TYPES = {
3720 "ext4": "EMMC",
3721 "emmc": "EMMC",
3722 "f2fs": "EMMC",
3723 "squashfs": "EMMC",
3724 "erofs": "EMMC"
3725}
3726
3727
3728def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3729 """
3730 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3731 backwards compatibility. It aborts if the fstab entry has slotselect option
3732 (unless check_no_slot is explicitly set to False).
3733 """
3734 fstab = info["fstab"]
3735 if fstab:
3736 if check_no_slot:
3737 assert not fstab[mount_point].slotselect, \
3738 "Use GetTypeAndDeviceExpr instead"
3739 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3740 fstab[mount_point].device)
3741 raise KeyError
3742
3743
3744def GetTypeAndDeviceExpr(mount_point, info):
3745 """
3746 Return the filesystem of the partition, and an edify expression that evaluates
3747 to the device at runtime.
3748 """
3749 fstab = info["fstab"]
3750 if fstab:
3751 p = fstab[mount_point]
3752 device_expr = '"%s"' % fstab[mount_point].device
3753 if p.slotselect:
3754 device_expr = 'add_slot_suffix(%s)' % device_expr
3755 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
3756 raise KeyError
3757
Yifan Hongbdb32012020-05-07 12:38:53 -07003758
3759def GetEntryForDevice(fstab, device):
3760 """
3761 Returns:
3762 The first entry in fstab whose device is the given value.
3763 """
3764 if not fstab:
3765 return None
3766 for mount_point in fstab:
3767 if fstab[mount_point].device == device:
3768 return fstab[mount_point]
3769 return None
3770
Kelvin Zhang0876c412020-06-23 15:06:58 -04003771
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003772def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003773 """Parses and converts a PEM-encoded certificate into DER-encoded.
3774
3775 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3776
3777 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003778 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003779 """
3780 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003781 save = False
3782 for line in data.split("\n"):
3783 if "--END CERTIFICATE--" in line:
3784 break
3785 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003786 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003787 if "--BEGIN CERTIFICATE--" in line:
3788 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003789 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003790 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003791
Tao Bao04e1f012018-02-04 12:13:35 -08003792
3793def ExtractPublicKey(cert):
3794 """Extracts the public key (PEM-encoded) from the given certificate file.
3795
3796 Args:
3797 cert: The certificate filename.
3798
3799 Returns:
3800 The public key string.
3801
3802 Raises:
3803 AssertionError: On non-zero return from 'openssl'.
3804 """
3805 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3806 # While openssl 1.1 writes the key into the given filename followed by '-out',
3807 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3808 # stdout instead.
3809 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3810 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3811 pubkey, stderrdata = proc.communicate()
3812 assert proc.returncode == 0, \
3813 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3814 return pubkey
3815
3816
Tao Bao1ac886e2019-06-26 11:58:22 -07003817def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003818 """Extracts the AVB public key from the given public or private key.
3819
3820 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003821 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003822 key: The input key file, which should be PEM-encoded public or private key.
3823
3824 Returns:
3825 The path to the extracted AVB public key file.
3826 """
3827 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3828 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003829 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003830 return output
3831
3832
Abhishek Nigam1dfca462023-11-08 02:21:39 +00003833def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3834 info_dict=None):
3835 """Generates the recovery-from-boot patch and writes the script to output.
3836
3837 Most of the space in the boot and recovery images is just the kernel, which is
3838 identical for the two, so the resulting patch should be efficient. Add it to
3839 the output zip, along with a shell script that is run from init.rc on first
3840 boot to actually do the patching and install the new recovery image.
3841
3842 Args:
3843 input_dir: The top-level input directory of the target-files.zip.
3844 output_sink: The callback function that writes the result.
3845 recovery_img: File object for the recovery image.
3846 boot_img: File objects for the boot image.
3847 info_dict: A dict returned by common.LoadInfoDict() on the input
3848 target_files. Will use OPTIONS.info_dict if None has been given.
3849 """
3850 if info_dict is None:
3851 info_dict = OPTIONS.info_dict
3852
3853 full_recovery_image = info_dict.get("full_recovery_image") == "true"
3854 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3855
3856 if board_uses_vendorimage:
3857 # In this case, the output sink is rooted at VENDOR
3858 recovery_img_path = "etc/recovery.img"
3859 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3860 sh_dir = "bin"
3861 else:
3862 # In this case the output sink is rooted at SYSTEM
3863 recovery_img_path = "vendor/etc/recovery.img"
3864 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3865 sh_dir = "vendor/bin"
3866
3867 if full_recovery_image:
3868 output_sink(recovery_img_path, recovery_img.data)
3869
3870 else:
3871 system_root_image = info_dict.get("system_root_image") == "true"
3872 include_recovery_dtbo = info_dict.get("include_recovery_dtbo") == "true"
3873 include_recovery_acpio = info_dict.get("include_recovery_acpio") == "true"
3874 path = os.path.join(input_dir, recovery_resource_dat_path)
3875 # With system-root-image, boot and recovery images will have mismatching
3876 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3877 # to handle such a case.
3878 if system_root_image or include_recovery_dtbo or include_recovery_acpio:
3879 diff_program = ["bsdiff"]
3880 bonus_args = ""
3881 assert not os.path.exists(path)
3882 else:
3883 diff_program = ["imgdiff"]
3884 if os.path.exists(path):
3885 diff_program.append("-b")
3886 diff_program.append(path)
3887 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
3888 else:
3889 bonus_args = ""
3890
3891 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3892 _, _, patch = d.ComputePatch()
3893 output_sink("recovery-from-boot.p", patch)
3894
3895 try:
3896 # The following GetTypeAndDevice()s need to use the path in the target
3897 # info_dict instead of source_info_dict.
3898 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3899 check_no_slot=False)
3900 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3901 check_no_slot=False)
3902 except KeyError:
3903 return
3904
3905 if full_recovery_image:
3906
3907 # Note that we use /vendor to refer to the recovery resources. This will
3908 # work for a separate vendor partition mounted at /vendor or a
3909 # /system/vendor subdirectory on the system partition, for which init will
3910 # create a symlink from /vendor to /system/vendor.
3911
3912 sh = """#!/vendor/bin/sh
3913if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3914 applypatch \\
3915 --flash /vendor/etc/recovery.img \\
3916 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3917 log -t recovery "Installing new recovery image: succeeded" || \\
3918 log -t recovery "Installing new recovery image: failed"
3919else
3920 log -t recovery "Recovery image already installed"
3921fi
3922""" % {'type': recovery_type,
3923 'device': recovery_device,
3924 'sha1': recovery_img.sha1,
3925 'size': recovery_img.size}
3926 else:
3927 sh = """#!/vendor/bin/sh
3928if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3929 applypatch %(bonus_args)s \\
3930 --patch /vendor/recovery-from-boot.p \\
3931 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3932 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3933 log -t recovery "Installing new recovery image: succeeded" || \\
3934 log -t recovery "Installing new recovery image: failed"
3935else
3936 log -t recovery "Recovery image already installed"
3937fi
3938""" % {'boot_size': boot_img.size,
3939 'boot_sha1': boot_img.sha1,
3940 'recovery_size': recovery_img.size,
3941 'recovery_sha1': recovery_img.sha1,
3942 'boot_type': boot_type,
3943 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
3944 'recovery_type': recovery_type,
3945 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
3946 'bonus_args': bonus_args}
3947
3948 # The install script location moved from /system/etc to /system/bin in the L
3949 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3950 sh_location = os.path.join(sh_dir, "install-recovery.sh")
3951
3952 logger.info("putting script in %s", sh_location)
3953
3954 output_sink(sh_location, sh.encode())
3955
3956
3957class DynamicPartitionUpdate(object):
3958 def __init__(self, src_group=None, tgt_group=None, progress=None,
3959 block_difference=None):
3960 self.src_group = src_group
3961 self.tgt_group = tgt_group
3962 self.progress = progress
3963 self.block_difference = block_difference
3964
3965 @property
3966 def src_size(self):
3967 if not self.block_difference:
3968 return 0
3969 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3970
3971 @property
3972 def tgt_size(self):
3973 if not self.block_difference:
3974 return 0
3975 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3976
3977 @staticmethod
3978 def _GetSparseImageSize(img):
3979 if not img:
3980 return 0
3981 return img.blocksize * img.total_blocks
3982
3983
3984class DynamicGroupUpdate(object):
3985 def __init__(self, src_size=None, tgt_size=None):
3986 # None: group does not exist. 0: no size limits.
3987 self.src_size = src_size
3988 self.tgt_size = tgt_size
3989
3990
3991class DynamicPartitionsDifference(object):
3992 def __init__(self, info_dict, block_diffs, progress_dict=None,
3993 source_info_dict=None):
3994 if progress_dict is None:
3995 progress_dict = {}
3996
3997 self._remove_all_before_apply = False
3998 if source_info_dict is None:
3999 self._remove_all_before_apply = True
4000 source_info_dict = {}
4001
4002 block_diff_dict = collections.OrderedDict(
4003 [(e.partition, e) for e in block_diffs])
4004
4005 assert len(block_diff_dict) == len(block_diffs), \
4006 "Duplicated BlockDifference object for {}".format(
4007 [partition for partition, count in
4008 collections.Counter(e.partition for e in block_diffs).items()
4009 if count > 1])
4010
4011 self._partition_updates = collections.OrderedDict()
4012
4013 for p, block_diff in block_diff_dict.items():
4014 self._partition_updates[p] = DynamicPartitionUpdate()
4015 self._partition_updates[p].block_difference = block_diff
4016
4017 for p, progress in progress_dict.items():
4018 if p in self._partition_updates:
4019 self._partition_updates[p].progress = progress
4020
4021 tgt_groups = shlex.split(info_dict.get(
4022 "super_partition_groups", "").strip())
4023 src_groups = shlex.split(source_info_dict.get(
4024 "super_partition_groups", "").strip())
4025
4026 for g in tgt_groups:
4027 for p in shlex.split(info_dict.get(
4028 "super_%s_partition_list" % g, "").strip()):
4029 assert p in self._partition_updates, \
4030 "{} is in target super_{}_partition_list but no BlockDifference " \
4031 "object is provided.".format(p, g)
4032 self._partition_updates[p].tgt_group = g
4033
4034 for g in src_groups:
4035 for p in shlex.split(source_info_dict.get(
4036 "super_%s_partition_list" % g, "").strip()):
4037 assert p in self._partition_updates, \
4038 "{} is in source super_{}_partition_list but no BlockDifference " \
4039 "object is provided.".format(p, g)
4040 self._partition_updates[p].src_group = g
4041
4042 target_dynamic_partitions = set(shlex.split(info_dict.get(
4043 "dynamic_partition_list", "").strip()))
4044 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
4045 if u.tgt_size)
4046 assert block_diffs_with_target == target_dynamic_partitions, \
4047 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
4048 list(target_dynamic_partitions), list(block_diffs_with_target))
4049
4050 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
4051 "dynamic_partition_list", "").strip()))
4052 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
4053 if u.src_size)
4054 assert block_diffs_with_source == source_dynamic_partitions, \
4055 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
4056 list(source_dynamic_partitions), list(block_diffs_with_source))
4057
4058 if self._partition_updates:
4059 logger.info("Updating dynamic partitions %s",
4060 self._partition_updates.keys())
4061
4062 self._group_updates = collections.OrderedDict()
4063
4064 for g in tgt_groups:
4065 self._group_updates[g] = DynamicGroupUpdate()
4066 self._group_updates[g].tgt_size = int(info_dict.get(
4067 "super_%s_group_size" % g, "0").strip())
4068
4069 for g in src_groups:
4070 if g not in self._group_updates:
4071 self._group_updates[g] = DynamicGroupUpdate()
4072 self._group_updates[g].src_size = int(source_info_dict.get(
4073 "super_%s_group_size" % g, "0").strip())
4074
4075 self._Compute()
4076
4077 def WriteScript(self, script, output_zip, write_verify_script=False):
4078 script.Comment('--- Start patching dynamic partitions ---')
4079 for p, u in self._partition_updates.items():
4080 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
4081 script.Comment('Patch partition %s' % p)
4082 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
4083 write_verify_script=False)
4084
4085 op_list_path = MakeTempFile()
4086 with open(op_list_path, 'w') as f:
4087 for line in self._op_list:
4088 f.write('{}\n'.format(line))
4089
4090 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
4091
4092 script.Comment('Update dynamic partition metadata')
4093 script.AppendExtra('assert(update_dynamic_partitions('
4094 'package_extract_file("dynamic_partitions_op_list")));')
4095
4096 if write_verify_script:
4097 for p, u in self._partition_updates.items():
4098 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
4099 u.block_difference.WritePostInstallVerifyScript(script)
4100 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
4101
4102 for p, u in self._partition_updates.items():
4103 if u.tgt_size and u.src_size <= u.tgt_size:
4104 script.Comment('Patch partition %s' % p)
4105 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
4106 write_verify_script=write_verify_script)
4107 if write_verify_script:
4108 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
4109
4110 script.Comment('--- End patching dynamic partitions ---')
4111
4112 def _Compute(self):
4113 self._op_list = list()
4114
4115 def append(line):
4116 self._op_list.append(line)
4117
4118 def comment(line):
4119 self._op_list.append("# %s" % line)
4120
4121 if self._remove_all_before_apply:
4122 comment('Remove all existing dynamic partitions and groups before '
4123 'applying full OTA')
4124 append('remove_all_groups')
4125
4126 for p, u in self._partition_updates.items():
4127 if u.src_group and not u.tgt_group:
4128 append('remove %s' % p)
4129
4130 for p, u in self._partition_updates.items():
4131 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
4132 comment('Move partition %s from %s to default' % (p, u.src_group))
4133 append('move %s default' % p)
4134
4135 for p, u in self._partition_updates.items():
4136 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
4137 comment('Shrink partition %s from %d to %d' %
4138 (p, u.src_size, u.tgt_size))
4139 append('resize %s %s' % (p, u.tgt_size))
4140
4141 for g, u in self._group_updates.items():
4142 if u.src_size is not None and u.tgt_size is None:
4143 append('remove_group %s' % g)
4144 if (u.src_size is not None and u.tgt_size is not None and
4145 u.src_size > u.tgt_size):
4146 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
4147 append('resize_group %s %d' % (g, u.tgt_size))
4148
4149 for g, u in self._group_updates.items():
4150 if u.src_size is None and u.tgt_size is not None:
4151 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
4152 append('add_group %s %d' % (g, u.tgt_size))
4153 if (u.src_size is not None and u.tgt_size is not None and
4154 u.src_size < u.tgt_size):
4155 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
4156 append('resize_group %s %d' % (g, u.tgt_size))
4157
4158 for p, u in self._partition_updates.items():
4159 if u.tgt_group and not u.src_group:
4160 comment('Add partition %s to group %s' % (p, u.tgt_group))
4161 append('add %s %s' % (p, u.tgt_group))
4162
4163 for p, u in self._partition_updates.items():
4164 if u.tgt_size and u.src_size < u.tgt_size:
4165 comment('Grow partition %s from %d to %d' %
4166 (p, u.src_size, u.tgt_size))
4167 append('resize %s %d' % (p, u.tgt_size))
4168
4169 for p, u in self._partition_updates.items():
4170 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
4171 comment('Move partition %s from default to %s' %
4172 (p, u.tgt_group))
4173 append('move %s %s' % (p, u.tgt_group))
4174
4175
jiajia tangf3f842b2021-03-17 21:49:44 +08004176def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08004177 """
Yifan Hong85ac5012021-01-07 14:43:46 -08004178 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08004179
4180 Args:
Elliott Hughes97ad1202023-06-20 16:41:58 -07004181 boot_img: the boot image file. Ramdisk must be compressed with lz4 or gzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08004182
4183 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08004184 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08004185 """
Yifan Hongc65a0542021-01-07 14:21:01 -08004186 tmp_dir = MakeTempDir('boot_', suffix='.img')
4187 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04004188 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
4189 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08004190 ramdisk = os.path.join(tmp_dir, 'ramdisk')
4191 if not os.path.isfile(ramdisk):
4192 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
4193 return None
4194 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08004195 if ramdisk_format == RamdiskFormat.LZ4:
4196 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
4197 elif ramdisk_format == RamdiskFormat.GZ:
4198 with open(ramdisk, 'rb') as input_stream:
4199 with open(uncompressed_ramdisk, 'wb') as output_stream:
Elliott Hughes97ad1202023-06-20 16:41:58 -07004200 p2 = Run(['gzip', '-d'], stdin=input_stream.fileno(),
Kelvin Zhang563750f2021-04-28 12:46:17 -04004201 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08004202 p2.wait()
4203 else:
Elliott Hughes97ad1202023-06-20 16:41:58 -07004204 logger.error('Only support lz4 or gzip ramdisk format.')
jiajia tangf3f842b2021-03-17 21:49:44 +08004205 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08004206
4207 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
4208 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
4209 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
4210 # the host environment.
4211 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04004212 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08004213
Yifan Hongc65a0542021-01-07 14:21:01 -08004214 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
4215 prop_file = os.path.join(extracted_ramdisk, search_path)
4216 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08004217 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04004218 logger.warning(
4219 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08004220
Yifan Hong7dc51172021-01-12 11:27:39 -08004221 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08004222
Yifan Hong85ac5012021-01-07 14:43:46 -08004223 except ExternalError as e:
4224 logger.warning('Unable to get boot image build props: %s', e)
4225 return None
4226
4227
4228def GetBootImageTimestamp(boot_img):
4229 """
4230 Get timestamp from ramdisk within the boot image
4231
4232 Args:
4233 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
4234
4235 Return:
4236 An integer that corresponds to the timestamp of the boot image, or None
4237 if file has unknown format. Raise exception if an unexpected error has
4238 occurred.
4239 """
4240 prop_file = GetBootImageBuildProp(boot_img)
4241 if not prop_file:
4242 return None
4243
4244 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
4245 if props is None:
4246 return None
4247
4248 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08004249 timestamp = props.GetProp('ro.bootimage.build.date.utc')
4250 if timestamp:
4251 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04004252 logger.warning(
4253 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08004254 return None
4255
4256 except ExternalError as e:
4257 logger.warning('Unable to get boot image timestamp: %s', e)
4258 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04004259
4260
Kelvin Zhang26390482021-11-02 14:31:10 -07004261def IsSparseImage(filepath):
Kelvin Zhang1caead02022-09-23 10:06:03 -07004262 if not os.path.exists(filepath):
4263 return False
Kelvin Zhang26390482021-11-02 14:31:10 -07004264 with open(filepath, 'rb') as fp:
4265 # Magic for android sparse image format
4266 # https://source.android.com/devices/bootloader/images
4267 return fp.read(4) == b'\x3A\xFF\x26\xED'
Kelvin Zhangfcd731e2023-04-04 10:28:11 -07004268
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07004269
Kelvin Zhang22680912023-05-19 13:12:59 -07004270def UnsparseImage(filepath, target_path=None):
4271 if not IsSparseImage(filepath):
4272 return
4273 if target_path is None:
4274 tmp_img = MakeTempFile(suffix=".img")
4275 RunAndCheckOutput(["simg2img", filepath, tmp_img])
4276 os.rename(tmp_img, filepath)
4277 else:
4278 RunAndCheckOutput(["simg2img", filepath, target_path])
4279
4280
Kelvin Zhangfcd731e2023-04-04 10:28:11 -07004281def ParseUpdateEngineConfig(path: str):
4282 """Parse the update_engine config stored in file `path`
4283 Args
4284 path: Path to update_engine_config.txt file in target_files
4285
4286 Returns
4287 A tuple of (major, minor) version number . E.g. (2, 8)
4288 """
4289 with open(path, "r") as fp:
4290 # update_engine_config.txt is only supposed to contain two lines,
4291 # PAYLOAD_MAJOR_VERSION and PAYLOAD_MINOR_VERSION. 1024 should be more than
4292 # sufficient. If the length is more than that, something is wrong.
4293 data = fp.read(1024)
4294 major = re.search(r"PAYLOAD_MAJOR_VERSION=(\d+)", data)
4295 if not major:
4296 raise ValueError(
4297 f"{path} is an invalid update_engine config, missing PAYLOAD_MAJOR_VERSION {data}")
4298 minor = re.search(r"PAYLOAD_MINOR_VERSION=(\d+)", data)
4299 if not minor:
4300 raise ValueError(
4301 f"{path} is an invalid update_engine config, missing PAYLOAD_MINOR_VERSION {data}")
Kelvin Zhang9dbe2ce2023-04-17 16:38:08 -07004302 return (int(major.group(1)), int(minor.group(1)))