blob: e00825d4dd2e66d62eb7a657ebcd5c8c5c561ba9 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
Robin Lee34ea7392020-01-02 20:21:18 +010065 self.search_path = os.path.realpath(os.path.join(os.path.dirname(exec_path), '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080072 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070073 self.public_key_suffix = ".x509.pem"
74 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070075 # use otatools built boot_signer by default
76 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070077 self.boot_signer_args = []
78 self.verity_signer_path = None
79 self.verity_signer_args = []
Dan Austin52903642019-12-12 15:44:00 -080080 self.aftl_server = None
81 self.aftl_key_path = None
82 self.aftl_manufacturer_key_path = None
83 self.aftl_signer_helper = None
Dan Albert8b72aef2015-03-23 19:13:21 -070084 self.verbose = False
85 self.tempfiles = []
86 self.device_specific = None
87 self.extras = {}
88 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070089 self.source_info_dict = None
90 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070091 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070092 # Stash size cannot exceed cache_size * threshold.
93 self.cache_size = None
94 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070095 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -070096
97
98OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070099
Tao Bao71197512018-10-11 14:08:45 -0700100# The block size that's used across the releasetools scripts.
101BLOCK_SIZE = 4096
102
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800103# Values for "certificate" in apkcerts that mean special things.
104SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
105
Tao Bao5cc0abb2019-03-21 10:18:05 -0700106# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
107# that system_other is not in the list because we don't want to include its
108# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900109AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700110 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800111
Tao Bao08c190f2019-06-03 23:07:58 -0700112# Chained VBMeta partitions.
113AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
114
Tianjie Xu861f4132018-09-12 11:49:33 -0700115# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900116PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700117
118
Tianjie Xu209db462016-05-24 17:34:52 -0700119class ErrorCode(object):
120 """Define error_codes for failures that happen during the actual
121 update package installation.
122
123 Error codes 0-999 are reserved for failures before the package
124 installation (i.e. low battery, package verification failure).
125 Detailed code in 'bootable/recovery/error_code.h' """
126
127 SYSTEM_VERIFICATION_FAILURE = 1000
128 SYSTEM_UPDATE_FAILURE = 1001
129 SYSTEM_UNEXPECTED_CONTENTS = 1002
130 SYSTEM_NONZERO_CONTENTS = 1003
131 SYSTEM_RECOVER_FAILURE = 1004
132 VENDOR_VERIFICATION_FAILURE = 2000
133 VENDOR_UPDATE_FAILURE = 2001
134 VENDOR_UNEXPECTED_CONTENTS = 2002
135 VENDOR_NONZERO_CONTENTS = 2003
136 VENDOR_RECOVER_FAILURE = 2004
137 OEM_PROP_MISMATCH = 3000
138 FINGERPRINT_MISMATCH = 3001
139 THUMBPRINT_MISMATCH = 3002
140 OLDER_BUILD = 3003
141 DEVICE_MISMATCH = 3004
142 BAD_PATCH_FILE = 3005
143 INSUFFICIENT_CACHE_SPACE = 3006
144 TUNE_PARTITION_FAILURE = 3007
145 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800146
Tao Bao80921982018-03-21 21:02:19 -0700147
Dan Albert8b72aef2015-03-23 19:13:21 -0700148class ExternalError(RuntimeError):
149 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700150
151
Tao Bao32fcdab2018-10-12 10:30:39 -0700152def InitLogging():
153 DEFAULT_LOGGING_CONFIG = {
154 'version': 1,
155 'disable_existing_loggers': False,
156 'formatters': {
157 'standard': {
158 'format':
159 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
160 'datefmt': '%Y-%m-%d %H:%M:%S',
161 },
162 },
163 'handlers': {
164 'default': {
165 'class': 'logging.StreamHandler',
166 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700167 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700168 },
169 },
170 'loggers': {
171 '': {
172 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700173 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700174 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700175 }
176 }
177 }
178 env_config = os.getenv('LOGGING_CONFIG')
179 if env_config:
180 with open(env_config) as f:
181 config = json.load(f)
182 else:
183 config = DEFAULT_LOGGING_CONFIG
184
185 # Increase the logging level for verbose mode.
186 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700187 config = copy.deepcopy(config)
188 config['handlers']['default']['level'] = 'INFO'
189
190 if OPTIONS.logfile:
191 config = copy.deepcopy(config)
192 config['handlers']['logfile'] = {
193 'class': 'logging.FileHandler',
194 'formatter': 'standard',
195 'level': 'INFO',
196 'mode': 'w',
197 'filename': OPTIONS.logfile,
198 }
199 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700200
201 logging.config.dictConfig(config)
202
203
Tao Bao39451582017-05-04 11:10:47 -0700204def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700205 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700206
Tao Bao73dd4f42018-10-04 16:25:33 -0700207 Args:
208 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700209 verbose: Whether the commands should be shown. Default to the global
210 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700211 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
212 stdin, etc. stdout and stderr will default to subprocess.PIPE and
213 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800214 universal_newlines will default to True, as most of the users in
215 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700216
217 Returns:
218 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700219 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700220 if 'stdout' not in kwargs and 'stderr' not in kwargs:
221 kwargs['stdout'] = subprocess.PIPE
222 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800223 if 'universal_newlines' not in kwargs:
224 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700225 # Don't log any if caller explicitly says so.
226 if verbose != False:
227 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700228 return subprocess.Popen(args, **kwargs)
229
230
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800231def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800232 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800233
234 Args:
235 args: The command represented as a list of strings.
236 verbose: Whether the commands should be shown. Default to the global
237 verbosity if unspecified.
238 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
239 stdin, etc. stdout and stderr will default to subprocess.PIPE and
240 subprocess.STDOUT respectively unless caller specifies any of them.
241
Bill Peckham889b0c62019-02-21 18:53:37 -0800242 Raises:
243 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800244 """
245 proc = Run(args, verbose=verbose, **kwargs)
246 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800247
248 if proc.returncode != 0:
249 raise ExternalError(
250 "Failed to run command '{}' (exit code {})".format(
251 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800252
253
Tao Bao986ee862018-10-04 15:46:16 -0700254def RunAndCheckOutput(args, verbose=None, **kwargs):
255 """Runs the given command and returns the output.
256
257 Args:
258 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700259 verbose: Whether the commands should be shown. Default to the global
260 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700261 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
262 stdin, etc. stdout and stderr will default to subprocess.PIPE and
263 subprocess.STDOUT respectively unless caller specifies any of them.
264
265 Returns:
266 The output string.
267
268 Raises:
269 ExternalError: On non-zero exit from the command.
270 """
Tao Bao986ee862018-10-04 15:46:16 -0700271 proc = Run(args, verbose=verbose, **kwargs)
272 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800273 if output is None:
274 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700275 # Don't log any if caller explicitly says so.
276 if verbose != False:
277 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700278 if proc.returncode != 0:
279 raise ExternalError(
280 "Failed to run command '{}' (exit code {}):\n{}".format(
281 args, proc.returncode, output))
282 return output
283
284
Tao Baoc765cca2018-01-31 17:32:40 -0800285def RoundUpTo4K(value):
286 rounded_up = value + 4095
287 return rounded_up - (rounded_up % 4096)
288
289
Ying Wang7e6d4e42010-12-13 16:25:36 -0800290def CloseInheritedPipes():
291 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
292 before doing other work."""
293 if platform.system() != "Darwin":
294 return
295 for d in range(3, 1025):
296 try:
297 stat = os.fstat(d)
298 if stat is not None:
299 pipebit = stat[0] & 0x1000
300 if pipebit != 0:
301 os.close(d)
302 except OSError:
303 pass
304
305
Tao Bao1c320f82019-10-04 23:25:12 -0700306class BuildInfo(object):
307 """A class that holds the information for a given build.
308
309 This class wraps up the property querying for a given source or target build.
310 It abstracts away the logic of handling OEM-specific properties, and caches
311 the commonly used properties such as fingerprint.
312
313 There are two types of info dicts: a) build-time info dict, which is generated
314 at build time (i.e. included in a target_files zip); b) OEM info dict that is
315 specified at package generation time (via command line argument
316 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
317 having "oem_fingerprint_properties" in build-time info dict), all the queries
318 would be answered based on build-time info dict only. Otherwise if using
319 OEM-specific properties, some of them will be calculated from two info dicts.
320
321 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normanab5acef2020-01-08 17:01:11 -0800322 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700323
324 Attributes:
325 info_dict: The build-time info dict.
326 is_ab: Whether it's a build that uses A/B OTA.
327 oem_dicts: A list of OEM dicts.
328 oem_props: A list of OEM properties that should be read from OEM dicts; None
329 if the build doesn't use any OEM-specific property.
330 fingerprint: The fingerprint of the build, which would be calculated based
331 on OEM properties if applicable.
332 device: The device name, which could come from OEM dicts if applicable.
333 """
334
335 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
336 "ro.product.manufacturer", "ro.product.model",
337 "ro.product.name"]
Steven Laverdd33d752020-04-27 16:26:31 -0700338 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
339 "product", "odm", "vendor", "system_ext", "system"]
340 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
341 "product", "product_services", "odm", "vendor", "system"]
342 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700343
Tao Bao3ed35d32019-10-07 20:48:48 -0700344 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700345 """Initializes a BuildInfo instance with the given dicts.
346
347 Note that it only wraps up the given dicts, without making copies.
348
349 Arguments:
350 info_dict: The build-time info dict.
351 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
352 that it always uses the first dict to calculate the fingerprint or the
353 device name. The rest would be used for asserting OEM properties only
354 (e.g. one package can be installed on one of these devices).
355
356 Raises:
357 ValueError: On invalid inputs.
358 """
359 self.info_dict = info_dict
360 self.oem_dicts = oem_dicts
361
362 self._is_ab = info_dict.get("ab_update") == "true"
Tao Bao1c320f82019-10-04 23:25:12 -0700363
Hongguang Chen34354032020-05-03 21:24:26 -0700364 # Skip _oem_props if oem_dicts is None to use BuildInfo in
365 # sign_target_files_apks
366 if self.oem_dicts:
367 self._oem_props = info_dict.get("oem_fingerprint_properties")
368 else:
369 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700370
Daniel Normanab5acef2020-01-08 17:01:11 -0800371 def check_fingerprint(fingerprint):
372 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
373 raise ValueError(
374 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
375 "3.2.2. Build Parameters.".format(fingerprint))
376
377
378 self._partition_fingerprints = {}
379 for partition in PARTITIONS_WITH_CARE_MAP:
380 try:
381 fingerprint = self.CalculatePartitionFingerprint(partition)
382 check_fingerprint(fingerprint)
383 self._partition_fingerprints[partition] = fingerprint
384 except ExternalError:
385 continue
386 if "system" in self._partition_fingerprints:
387 # system_other is not included in PARTITIONS_WITH_CARE_MAP, but does
388 # need a fingerprint when creating the image.
389 self._partition_fingerprints[
390 "system_other"] = self._partition_fingerprints["system"]
391
Tao Bao1c320f82019-10-04 23:25:12 -0700392 # These two should be computed only after setting self._oem_props.
393 self._device = self.GetOemProperty("ro.product.device")
394 self._fingerprint = self.CalculateFingerprint()
Daniel Normanab5acef2020-01-08 17:01:11 -0800395 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700396
397 @property
398 def is_ab(self):
399 return self._is_ab
400
401 @property
402 def device(self):
403 return self._device
404
405 @property
406 def fingerprint(self):
407 return self._fingerprint
408
409 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700410 def oem_props(self):
411 return self._oem_props
412
413 def __getitem__(self, key):
414 return self.info_dict[key]
415
416 def __setitem__(self, key, value):
417 self.info_dict[key] = value
418
419 def get(self, key, default=None):
420 return self.info_dict.get(key, default)
421
422 def items(self):
423 return self.info_dict.items()
424
Daniel Normanab5acef2020-01-08 17:01:11 -0800425 def GetPartitionBuildProp(self, prop, partition):
426 """Returns the inquired build property for the provided partition."""
427 # If provided a partition for this property, only look within that
428 # partition's build.prop.
429 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
430 prop = prop.replace("ro.product", "ro.product.{}".format(partition))
431 else:
432 prop = prop.replace("ro.", "ro.{}.".format(partition))
433 try:
434 return self.info_dict.get("{}.build.prop".format(partition), {})[prop]
435 except KeyError:
436 raise ExternalError("couldn't find %s in %s.build.prop" %
437 (prop, partition))
438
Tao Bao1c320f82019-10-04 23:25:12 -0700439 def GetBuildProp(self, prop):
Daniel Normanab5acef2020-01-08 17:01:11 -0800440 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700441 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
442 return self._ResolveRoProductBuildProp(prop)
443
444 try:
445 return self.info_dict.get("build.prop", {})[prop]
446 except KeyError:
447 raise ExternalError("couldn't find %s in build.prop" % (prop,))
448
449 def _ResolveRoProductBuildProp(self, prop):
450 """Resolves the inquired ro.product.* build property"""
451 prop_val = self.info_dict.get("build.prop", {}).get(prop)
452 if prop_val:
453 return prop_val
454
Steven Laverdd33d752020-04-27 16:26:31 -0700455 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tao Bao1c320f82019-10-04 23:25:12 -0700456 source_order_val = self.info_dict.get("build.prop", {}).get(
457 "ro.product.property_source_order")
458 if source_order_val:
459 source_order = source_order_val.split(",")
460 else:
Steven Laverdd33d752020-04-27 16:26:31 -0700461 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700462
463 # Check that all sources in ro.product.property_source_order are valid
Steven Laverdd33d752020-04-27 16:26:31 -0700464 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700465 raise ExternalError(
466 "Invalid ro.product.property_source_order '{}'".format(source_order))
467
468 for source in source_order:
469 source_prop = prop.replace(
470 "ro.product", "ro.product.{}".format(source), 1)
471 prop_val = self.info_dict.get(
472 "{}.build.prop".format(source), {}).get(source_prop)
473 if prop_val:
474 return prop_val
475
476 raise ExternalError("couldn't resolve {}".format(prop))
477
Steven Laverdd33d752020-04-27 16:26:31 -0700478 def _GetRoProductPropsDefaultSourceOrder(self):
479 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
480 # values of these properties for each Android release.
481 android_codename = self.info_dict.get("build.prop", {}).get(
482 "ro.build.version.codename")
483 if android_codename == "REL":
484 android_version = self.info_dict.get("build.prop", {}).get(
485 "ro.build.version.release")
486 if android_version == "10":
487 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
488 # NOTE: float() conversion of android_version will have rounding error.
489 # We are checking for "9" or less, and using "< 10" is well outside of
490 # possible floating point rounding.
491 try:
492 android_version_val = float(android_version)
493 except ValueError:
494 android_version_val = 0
495 if android_version_val < 10:
496 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
497 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
498
Tao Bao1c320f82019-10-04 23:25:12 -0700499 def GetOemProperty(self, key):
500 if self.oem_props is not None and key in self.oem_props:
501 return self.oem_dicts[0][key]
502 return self.GetBuildProp(key)
503
Daniel Normanab5acef2020-01-08 17:01:11 -0800504 def GetPartitionFingerprint(self, partition):
505 return self._partition_fingerprints.get(partition, None)
506
507 def CalculatePartitionFingerprint(self, partition):
508 try:
509 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
510 except ExternalError:
511 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
512 self.GetPartitionBuildProp("ro.product.brand", partition),
513 self.GetPartitionBuildProp("ro.product.name", partition),
514 self.GetPartitionBuildProp("ro.product.device", partition),
515 self.GetPartitionBuildProp("ro.build.version.release", partition),
516 self.GetPartitionBuildProp("ro.build.id", partition),
517 self.GetPartitionBuildProp("ro.build.version.incremental", partition),
518 self.GetPartitionBuildProp("ro.build.type", partition),
519 self.GetPartitionBuildProp("ro.build.tags", partition))
520
Tao Bao1c320f82019-10-04 23:25:12 -0700521 def CalculateFingerprint(self):
522 if self.oem_props is None:
523 try:
524 return self.GetBuildProp("ro.build.fingerprint")
525 except ExternalError:
526 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
527 self.GetBuildProp("ro.product.brand"),
528 self.GetBuildProp("ro.product.name"),
529 self.GetBuildProp("ro.product.device"),
530 self.GetBuildProp("ro.build.version.release"),
531 self.GetBuildProp("ro.build.id"),
532 self.GetBuildProp("ro.build.version.incremental"),
533 self.GetBuildProp("ro.build.type"),
534 self.GetBuildProp("ro.build.tags"))
535 return "%s/%s/%s:%s" % (
536 self.GetOemProperty("ro.product.brand"),
537 self.GetOemProperty("ro.product.name"),
538 self.GetOemProperty("ro.product.device"),
539 self.GetBuildProp("ro.build.thumbprint"))
540
541 def WriteMountOemScript(self, script):
542 assert self.oem_props is not None
543 recovery_mount_options = self.info_dict.get("recovery_mount_options")
544 script.Mount("/oem", recovery_mount_options)
545
546 def WriteDeviceAssertions(self, script, oem_no_mount):
547 # Read the property directly if not using OEM properties.
548 if not self.oem_props:
549 script.AssertDevice(self.device)
550 return
551
552 # Otherwise assert OEM properties.
553 if not self.oem_dicts:
554 raise ExternalError(
555 "No OEM file provided to answer expected assertions")
556
557 for prop in self.oem_props.split():
558 values = []
559 for oem_dict in self.oem_dicts:
560 if prop in oem_dict:
561 values.append(oem_dict[prop])
562 if not values:
563 raise ExternalError(
564 "The OEM file is missing the property %s" % (prop,))
565 script.AssertOemProperty(prop, values, oem_no_mount)
566
567
Tao Bao410ad8b2018-08-24 12:08:38 -0700568def LoadInfoDict(input_file, repacking=False):
569 """Loads the key/value pairs from the given input target_files.
570
571 It reads `META/misc_info.txt` file in the target_files input, does sanity
572 checks and returns the parsed key/value pairs for to the given build. It's
573 usually called early when working on input target_files files, e.g. when
574 generating OTAs, or signing builds. Note that the function may be called
575 against an old target_files file (i.e. from past dessert releases). So the
576 property parsing needs to be backward compatible.
577
578 In a `META/misc_info.txt`, a few properties are stored as links to the files
579 in the PRODUCT_OUT directory. It works fine with the build system. However,
580 they are no longer available when (re)generating images from target_files zip.
581 When `repacking` is True, redirect these properties to the actual files in the
582 unzipped directory.
583
584 Args:
585 input_file: The input target_files file, which could be an open
586 zipfile.ZipFile instance, or a str for the dir that contains the files
587 unzipped from a target_files file.
588 repacking: Whether it's trying repack an target_files file after loading the
589 info dict (default: False). If so, it will rewrite a few loaded
590 properties (e.g. selinux_fc, root_dir) to point to the actual files in
591 target_files file. When doing repacking, `input_file` must be a dir.
592
593 Returns:
594 A dict that contains the parsed key/value pairs.
595
596 Raises:
597 AssertionError: On invalid input arguments.
598 ValueError: On malformed input values.
599 """
600 if repacking:
601 assert isinstance(input_file, str), \
602 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700603
Doug Zongkerc9253822014-02-04 12:17:58 -0800604 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700605 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800606 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800607 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700608 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800609 try:
610 with open(path) as f:
611 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700612 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800613 if e.errno == errno.ENOENT:
614 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800615
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700616 try:
Michael Runge6e836112014-04-15 17:40:21 -0700617 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700618 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700619 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700620
Tao Bao410ad8b2018-08-24 12:08:38 -0700621 if "recovery_api_version" not in d:
622 raise ValueError("Failed to find 'recovery_api_version'")
623 if "fstab_version" not in d:
624 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800625
Tao Bao410ad8b2018-08-24 12:08:38 -0700626 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700627 # "selinux_fc" properties should point to the file_contexts files
628 # (file_contexts.bin) under META/.
629 for key in d:
630 if key.endswith("selinux_fc"):
631 fc_basename = os.path.basename(d[key])
632 fc_config = os.path.join(input_file, "META", fc_basename)
633 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700634
Daniel Norman72c626f2019-05-13 15:58:14 -0700635 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700636
Tom Cherryd14b8952018-08-09 14:26:00 -0700637 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700638 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700639 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700640 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700641
David Anderson0ec64ac2019-12-06 12:21:18 -0800642 # Redirect {partition}_base_fs_file for each of the named partitions.
643 for part_name in ["system", "vendor", "system_ext", "product", "odm"]:
644 key_name = part_name + "_base_fs_file"
645 if key_name not in d:
646 continue
647 basename = os.path.basename(d[key_name])
648 base_fs_file = os.path.join(input_file, "META", basename)
649 if os.path.exists(base_fs_file):
650 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700651 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700652 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800653 "Failed to find %s base fs file: %s", part_name, base_fs_file)
654 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700655
Doug Zongker37974732010-09-16 17:44:38 -0700656 def makeint(key):
657 if key in d:
658 d[key] = int(d[key], 0)
659
660 makeint("recovery_api_version")
661 makeint("blocksize")
662 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700663 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700664 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700665 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700666 makeint("recovery_size")
667 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800668 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700669
Tao Bao765668f2019-10-04 22:03:00 -0700670 # Load recovery fstab if applicable.
671 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800672
Tianjie Xu861f4132018-09-12 11:49:33 -0700673 # Tries to load the build props for all partitions with care_map, including
674 # system and vendor.
675 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800676 partition_prop = "{}.build.prop".format(partition)
677 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700678 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800679 # Some partition might use /<partition>/etc/build.prop as the new path.
680 # TODO: try new path first when majority of them switch to the new path.
681 if not d[partition_prop]:
682 d[partition_prop] = LoadBuildProp(
683 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700684 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800685
Tao Bao3ed35d32019-10-07 20:48:48 -0700686 # Set up the salt (based on fingerprint) that will be used when adding AVB
687 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800688 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700689 build_info = BuildInfo(d)
Daniel Normanab5acef2020-01-08 17:01:11 -0800690 for partition in PARTITIONS_WITH_CARE_MAP:
691 fingerprint = build_info.GetPartitionFingerprint(partition)
692 if fingerprint:
693 d["avb_{}_salt".format(partition)] = sha256(fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800694
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700695 return d
696
Tao Baod1de6f32017-03-01 16:38:48 -0800697
Tao Baobcd1d162017-08-26 13:10:26 -0700698def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700699 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700700 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700701 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700702 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700703 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700704 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700705
Tao Baod1de6f32017-03-01 16:38:48 -0800706
Daniel Norman4cc9df62019-07-18 10:11:07 -0700707def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900708 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700709 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900710
Daniel Norman4cc9df62019-07-18 10:11:07 -0700711
712def LoadDictionaryFromFile(file_path):
713 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900714 return LoadDictionaryFromLines(lines)
715
716
Michael Runge6e836112014-04-15 17:40:21 -0700717def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700718 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700719 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700720 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700721 if not line or line.startswith("#"):
722 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700723 if "=" in line:
724 name, value = line.split("=", 1)
725 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700726 return d
727
Tao Baod1de6f32017-03-01 16:38:48 -0800728
Tianjie Xucfa86222016-03-07 16:31:19 -0800729def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
730 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700731 class Partition(object):
Yifan Hong7169f752020-04-17 10:08:10 -0700732 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -0700733 self.mount_point = mount_point
734 self.fs_type = fs_type
735 self.device = device
736 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700737 self.context = context
Yifan Hong7169f752020-04-17 10:08:10 -0700738 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700739
740 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800741 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700742 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700743 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700744 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700745
Tao Baod1de6f32017-03-01 16:38:48 -0800746 assert fstab_version == 2
747
748 d = {}
749 for line in data.split("\n"):
750 line = line.strip()
751 if not line or line.startswith("#"):
752 continue
753
754 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
755 pieces = line.split()
756 if len(pieces) != 5:
757 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
758
759 # Ignore entries that are managed by vold.
760 options = pieces[4]
761 if "voldmanaged=" in options:
762 continue
763
764 # It's a good line, parse it.
765 length = 0
Yifan Hong7169f752020-04-17 10:08:10 -0700766 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -0800767 options = options.split(",")
768 for i in options:
769 if i.startswith("length="):
770 length = int(i[7:])
Yifan Hong7169f752020-04-17 10:08:10 -0700771 elif i == "slotselect":
772 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -0800773 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800774 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700775 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800776
Tao Baod1de6f32017-03-01 16:38:48 -0800777 mount_flags = pieces[3]
778 # Honor the SELinux context if present.
779 context = None
780 for i in mount_flags.split(","):
781 if i.startswith("context="):
782 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800783
Tao Baod1de6f32017-03-01 16:38:48 -0800784 mount_point = pieces[1]
785 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong7169f752020-04-17 10:08:10 -0700786 device=pieces[0], length=length, context=context,
787 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800788
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700789 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700790 # system. Other areas assume system is always at "/system" so point /system
791 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700792 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800793 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700794 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700795 return d
796
797
Tao Bao765668f2019-10-04 22:03:00 -0700798def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
799 """Finds the path to recovery fstab and loads its contents."""
800 # recovery fstab is only meaningful when installing an update via recovery
801 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong7169f752020-04-17 10:08:10 -0700802 if info_dict.get('ab_update') == 'true' and \
803 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -0700804 return None
805
806 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
807 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
808 # cases, since it may load the info_dict from an old build (e.g. when
809 # generating incremental OTAs from that build).
810 system_root_image = info_dict.get('system_root_image') == 'true'
811 if info_dict.get('no_recovery') != 'true':
812 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
813 if isinstance(input_file, zipfile.ZipFile):
814 if recovery_fstab_path not in input_file.namelist():
815 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
816 else:
817 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
818 if not os.path.exists(path):
819 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
820 return LoadRecoveryFSTab(
821 read_helper, info_dict['fstab_version'], recovery_fstab_path,
822 system_root_image)
823
824 if info_dict.get('recovery_as_boot') == 'true':
825 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
826 if isinstance(input_file, zipfile.ZipFile):
827 if recovery_fstab_path not in input_file.namelist():
828 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
829 else:
830 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
831 if not os.path.exists(path):
832 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
833 return LoadRecoveryFSTab(
834 read_helper, info_dict['fstab_version'], recovery_fstab_path,
835 system_root_image)
836
837 return None
838
839
Doug Zongker37974732010-09-16 17:44:38 -0700840def DumpInfoDict(d):
841 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700842 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700843
Dan Albert8b72aef2015-03-23 19:13:21 -0700844
Daniel Norman55417142019-11-25 16:04:36 -0800845def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700846 """Merges dynamic partition info variables.
847
848 Args:
849 framework_dict: The dictionary of dynamic partition info variables from the
850 partial framework target files.
851 vendor_dict: The dictionary of dynamic partition info variables from the
852 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700853
854 Returns:
855 The merged dynamic partition info dictionary.
856 """
857 merged_dict = {}
858 # Partition groups and group sizes are defined by the vendor dict because
859 # these values may vary for each board that uses a shared system image.
860 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Norman55417142019-11-25 16:04:36 -0800861 framework_dynamic_partition_list = framework_dict.get(
862 "dynamic_partition_list", "")
863 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list", "")
864 merged_dict["dynamic_partition_list"] = ("%s %s" % (
865 framework_dynamic_partition_list, vendor_dynamic_partition_list)).strip()
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700866 for partition_group in merged_dict["super_partition_groups"].split(" "):
867 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -0800868 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700869 if key not in vendor_dict:
870 raise ValueError("Vendor dict does not contain required key %s." % key)
871 merged_dict[key] = vendor_dict[key]
872
873 # Set the partition group's partition list using a concatenation of the
874 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -0800875 key = "super_%s_partition_list" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700876 merged_dict[key] = (
877 "%s %s" %
878 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +0530879
880 # Pick virtual ab related flags from vendor dict, if defined.
881 if "virtual_ab" in vendor_dict.keys():
882 merged_dict["virtual_ab"] = vendor_dict["virtual_ab"]
883 if "virtual_ab_retrofit" in vendor_dict.keys():
884 merged_dict["virtual_ab_retrofit"] = vendor_dict["virtual_ab_retrofit"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700885 return merged_dict
886
887
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800888def AppendAVBSigningArgs(cmd, partition):
889 """Append signing arguments for avbtool."""
890 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
891 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700892 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
893 new_key_path = os.path.join(OPTIONS.search_path, key_path)
894 if os.path.exists(new_key_path):
895 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800896 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
897 if key_path and algorithm:
898 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700899 avb_salt = OPTIONS.info_dict.get("avb_salt")
900 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700901 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700902 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800903
904
Tao Bao765668f2019-10-04 22:03:00 -0700905def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700906 """Returns the VBMeta arguments for partition.
907
908 It sets up the VBMeta argument by including the partition descriptor from the
909 given 'image', or by configuring the partition as a chained partition.
910
911 Args:
912 partition: The name of the partition (e.g. "system").
913 image: The path to the partition image.
914 info_dict: A dict returned by common.LoadInfoDict(). Will use
915 OPTIONS.info_dict if None has been given.
916
917 Returns:
918 A list of VBMeta arguments.
919 """
920 if info_dict is None:
921 info_dict = OPTIONS.info_dict
922
923 # Check if chain partition is used.
924 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800925 if not key_path:
926 return ["--include_descriptors_from_image", image]
927
928 # For a non-A/B device, we don't chain /recovery nor include its descriptor
929 # into vbmeta.img. The recovery image will be configured on an independent
930 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
931 # See details at
932 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700933 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800934 return []
935
936 # Otherwise chain the partition into vbmeta.
937 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
938 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700939
940
Tao Bao02a08592018-07-22 12:40:45 -0700941def GetAvbChainedPartitionArg(partition, info_dict, key=None):
942 """Constructs and returns the arg to build or verify a chained partition.
943
944 Args:
945 partition: The partition name.
946 info_dict: The info dict to look up the key info and rollback index
947 location.
948 key: The key to be used for building or verifying the partition. Defaults to
949 the key listed in info_dict.
950
951 Returns:
952 A string of form "partition:rollback_index_location:key" that can be used to
953 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700954 """
955 if key is None:
956 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700957 if key and not os.path.exists(key) and OPTIONS.search_path:
958 new_key_path = os.path.join(OPTIONS.search_path, key)
959 if os.path.exists(new_key_path):
960 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700961 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700962 rollback_index_location = info_dict[
963 "avb_" + partition + "_rollback_index_location"]
964 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
965
966
Daniel Norman276f0622019-07-26 14:13:51 -0700967def BuildVBMeta(image_path, partitions, name, needed_partitions):
968 """Creates a VBMeta image.
969
970 It generates the requested VBMeta image. The requested image could be for
971 top-level or chained VBMeta image, which is determined based on the name.
972
973 Args:
974 image_path: The output path for the new VBMeta image.
975 partitions: A dict that's keyed by partition names with image paths as
976 values. Only valid partition names are accepted, as listed in
977 common.AVB_PARTITIONS.
978 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
979 needed_partitions: Partitions whose descriptors should be included into the
980 generated VBMeta image.
981
982 Raises:
983 AssertionError: On invalid input args.
984 """
985 avbtool = OPTIONS.info_dict["avb_avbtool"]
986 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
987 AppendAVBSigningArgs(cmd, name)
988
989 for partition, path in partitions.items():
990 if partition not in needed_partitions:
991 continue
992 assert (partition in AVB_PARTITIONS or
993 partition in AVB_VBMETA_PARTITIONS), \
994 'Unknown partition: {}'.format(partition)
995 assert os.path.exists(path), \
996 'Failed to find {} for {}'.format(path, partition)
997 cmd.extend(GetAvbPartitionArg(partition, path))
998
999 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1000 if args and args.strip():
1001 split_args = shlex.split(args)
1002 for index, arg in enumerate(split_args[:-1]):
1003 # Sanity check that the image file exists. Some images might be defined
1004 # as a path relative to source tree, which may not be available at the
1005 # same location when running this script (we have the input target_files
1006 # zip only). For such cases, we additionally scan other locations (e.g.
1007 # IMAGES/, RADIO/, etc) before bailing out.
1008 if arg == '--include_descriptors_from_image':
1009 image_path = split_args[index + 1]
1010 if os.path.exists(image_path):
1011 continue
1012 found = False
1013 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1014 alt_path = os.path.join(
1015 OPTIONS.input_tmp, dir_name, os.path.basename(image_path))
1016 if os.path.exists(alt_path):
1017 split_args[index + 1] = alt_path
1018 found = True
1019 break
1020 assert found, 'Failed to find {}'.format(image_path)
1021 cmd.extend(split_args)
1022
1023 RunAndCheckOutput(cmd)
1024
Dan Austin52903642019-12-12 15:44:00 -08001025 if OPTIONS.aftl_server is not None:
1026 # Ensure the other AFTL parameters are set as well.
1027 assert OPTIONS.aftl_key_path is not None, 'No AFTL key provided.'
1028 assert OPTIONS.aftl_manufacturer_key_path is not None, 'No AFTL manufacturer key provided.'
1029 assert OPTIONS.aftl_signer_helper is not None, 'No AFTL signer helper provided.'
1030 # AFTL inclusion proof generation code will go here.
Daniel Norman276f0622019-07-26 14:13:51 -07001031
Steve Mucklee1b10862019-07-10 10:49:37 -07001032def _MakeRamdisk(sourcedir, fs_config_file=None):
1033 ramdisk_img = tempfile.NamedTemporaryFile()
1034
1035 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1036 cmd = ["mkbootfs", "-f", fs_config_file,
1037 os.path.join(sourcedir, "RAMDISK")]
1038 else:
1039 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1040 p1 = Run(cmd, stdout=subprocess.PIPE)
1041 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
1042
1043 p2.wait()
1044 p1.wait()
1045 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
1046 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
1047
1048 return ramdisk_img
1049
1050
Steve Mucklef83e3c32020-04-08 18:27:00 -07001051def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001052 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001053 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001054
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001055 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001056 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1057 we are building a two-step special image (i.e. building a recovery image to
1058 be loaded into /boot in two-step OTAs).
1059
1060 Return the image data, or None if sourcedir does not appear to contains files
1061 for building the requested image.
1062 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001063
Steve Mucklef83e3c32020-04-08 18:27:00 -07001064 # "boot" or "recovery", without extension.
1065 partition_name = os.path.basename(sourcedir).lower()
1066
1067 if partition_name == "recovery":
1068 kernel = "kernel"
1069 else:
1070 kernel = image_name.replace("boot", "kernel")
1071 kernel = kernel.replace(".img","")
1072 if not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001073 return None
1074
1075 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001076 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001077
Doug Zongkerd5131602012-08-02 14:46:42 -07001078 if info_dict is None:
1079 info_dict = OPTIONS.info_dict
1080
Doug Zongkereef39442009-04-02 12:14:19 -07001081 img = tempfile.NamedTemporaryFile()
1082
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001083 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001084 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001085
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001086 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1087 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1088
Steve Mucklef83e3c32020-04-08 18:27:00 -07001089 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, kernel)]
Doug Zongker38a649f2009-06-17 09:07:09 -07001090
Benoit Fradina45a8682014-07-14 21:00:43 +02001091 fn = os.path.join(sourcedir, "second")
1092 if os.access(fn, os.F_OK):
1093 cmd.append("--second")
1094 cmd.append(fn)
1095
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001096 fn = os.path.join(sourcedir, "dtb")
1097 if os.access(fn, os.F_OK):
1098 cmd.append("--dtb")
1099 cmd.append(fn)
1100
Doug Zongker171f1cd2009-06-15 22:36:37 -07001101 fn = os.path.join(sourcedir, "cmdline")
1102 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001103 cmd.append("--cmdline")
1104 cmd.append(open(fn).read().rstrip("\n"))
1105
1106 fn = os.path.join(sourcedir, "base")
1107 if os.access(fn, os.F_OK):
1108 cmd.append("--base")
1109 cmd.append(open(fn).read().rstrip("\n"))
1110
Ying Wang4de6b5b2010-08-25 14:29:34 -07001111 fn = os.path.join(sourcedir, "pagesize")
1112 if os.access(fn, os.F_OK):
1113 cmd.append("--pagesize")
1114 cmd.append(open(fn).read().rstrip("\n"))
1115
Steve Muckle759d0c82020-03-16 19:13:46 -07001116 if partition_name == "recovery":
1117 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddye4d5d562020-05-04 19:40:16 +05301118 if not args:
1119 # Fall back to "mkbootimg_args" for recovery image
1120 # in case "recovery_mkbootimg_args" is not set.
1121 args = info_dict.get("mkbootimg_args")
Steve Muckle759d0c82020-03-16 19:13:46 -07001122 else:
1123 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001124 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001125 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001126
Tao Bao76def242017-11-21 09:25:31 -08001127 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001128 if args and args.strip():
1129 cmd.extend(shlex.split(args))
1130
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001131 if has_ramdisk:
1132 cmd.extend(["--ramdisk", ramdisk_img.name])
1133
Tao Baod95e9fd2015-03-29 23:07:41 -07001134 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001135 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001136 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001137 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001138 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001139 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001140
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001141 if partition_name == "recovery":
1142 if info_dict.get("include_recovery_dtbo") == "true":
1143 fn = os.path.join(sourcedir, "recovery_dtbo")
1144 cmd.extend(["--recovery_dtbo", fn])
1145 if info_dict.get("include_recovery_acpio") == "true":
1146 fn = os.path.join(sourcedir, "recovery_acpio")
1147 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001148
Tao Bao986ee862018-10-04 15:46:16 -07001149 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001150
Tao Bao76def242017-11-21 09:25:31 -08001151 if (info_dict.get("boot_signer") == "true" and
1152 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001153 # Hard-code the path as "/boot" for two-step special recovery image (which
1154 # will be loaded into /boot during the two-step OTA).
1155 if two_step_image:
1156 path = "/boot"
1157 else:
Tao Baobf70c312017-07-11 17:27:55 -07001158 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001159 cmd = [OPTIONS.boot_signer_path]
1160 cmd.extend(OPTIONS.boot_signer_args)
1161 cmd.extend([path, img.name,
1162 info_dict["verity_key"] + ".pk8",
1163 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001164 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001165
Tao Baod95e9fd2015-03-29 23:07:41 -07001166 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001167 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001168 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001169 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001170 # We have switched from the prebuilt futility binary to using the tool
1171 # (futility-host) built from the source. Override the setting in the old
1172 # TF.zip.
1173 futility = info_dict["futility"]
1174 if futility.startswith("prebuilts/"):
1175 futility = "futility-host"
1176 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001177 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001178 info_dict["vboot_key"] + ".vbprivk",
1179 info_dict["vboot_subkey"] + ".vbprivk",
1180 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001181 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001182 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001183
Tao Baof3282b42015-04-01 11:21:55 -07001184 # Clean up the temp files.
1185 img_unsigned.close()
1186 img_keyblock.close()
1187
David Zeuthen8fecb282017-12-01 16:24:01 -05001188 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001189 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001190 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001191 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001192 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001193 "--partition_size", str(part_size), "--partition_name",
1194 partition_name]
1195 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001196 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001197 if args and args.strip():
1198 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001199 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001200
1201 img.seek(os.SEEK_SET, 0)
1202 data = img.read()
1203
1204 if has_ramdisk:
1205 ramdisk_img.close()
1206 img.close()
1207
1208 return data
1209
1210
Doug Zongkerd5131602012-08-02 14:46:42 -07001211def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001212 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001213 """Return a File object with the desired bootable image.
1214
1215 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1216 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1217 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001218
Doug Zongker55d93282011-01-25 17:03:34 -08001219 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1220 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001221 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001222 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001223
1224 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1225 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001226 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001227 return File.FromLocalFile(name, prebuilt_path)
1228
Tao Bao32fcdab2018-10-12 10:30:39 -07001229 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001230
1231 if info_dict is None:
1232 info_dict = OPTIONS.info_dict
1233
1234 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001235 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1236 # for recovery.
1237 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1238 prebuilt_name != "boot.img" or
1239 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001240
Doug Zongker6f1d0312014-08-22 08:07:12 -07001241 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Mucklef83e3c32020-04-08 18:27:00 -07001242 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001243 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001244 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001245 if data:
1246 return File(name, data)
1247 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001248
Doug Zongkereef39442009-04-02 12:14:19 -07001249
Steve Mucklee1b10862019-07-10 10:49:37 -07001250def _BuildVendorBootImage(sourcedir, info_dict=None):
1251 """Build a vendor boot image from the specified sourcedir.
1252
1253 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1254 turn them into a vendor boot image.
1255
1256 Return the image data, or None if sourcedir does not appear to contains files
1257 for building the requested image.
1258 """
1259
1260 if info_dict is None:
1261 info_dict = OPTIONS.info_dict
1262
1263 img = tempfile.NamedTemporaryFile()
1264
1265 ramdisk_img = _MakeRamdisk(sourcedir)
1266
1267 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1268 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1269
1270 cmd = [mkbootimg]
1271
1272 fn = os.path.join(sourcedir, "dtb")
1273 if os.access(fn, os.F_OK):
1274 cmd.append("--dtb")
1275 cmd.append(fn)
1276
1277 fn = os.path.join(sourcedir, "vendor_cmdline")
1278 if os.access(fn, os.F_OK):
1279 cmd.append("--vendor_cmdline")
1280 cmd.append(open(fn).read().rstrip("\n"))
1281
1282 fn = os.path.join(sourcedir, "base")
1283 if os.access(fn, os.F_OK):
1284 cmd.append("--base")
1285 cmd.append(open(fn).read().rstrip("\n"))
1286
1287 fn = os.path.join(sourcedir, "pagesize")
1288 if os.access(fn, os.F_OK):
1289 cmd.append("--pagesize")
1290 cmd.append(open(fn).read().rstrip("\n"))
1291
1292 args = info_dict.get("mkbootimg_args")
1293 if args and args.strip():
1294 cmd.extend(shlex.split(args))
1295
1296 args = info_dict.get("mkbootimg_version_args")
1297 if args and args.strip():
1298 cmd.extend(shlex.split(args))
1299
1300 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1301 cmd.extend(["--vendor_boot", img.name])
1302
1303 RunAndCheckOutput(cmd)
1304
1305 # AVB: if enabled, calculate and add hash.
1306 if info_dict.get("avb_enable") == "true":
1307 avbtool = info_dict["avb_avbtool"]
1308 part_size = info_dict["vendor_boot_size"]
1309 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001310 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001311 AppendAVBSigningArgs(cmd, "vendor_boot")
1312 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1313 if args and args.strip():
1314 cmd.extend(shlex.split(args))
1315 RunAndCheckOutput(cmd)
1316
1317 img.seek(os.SEEK_SET, 0)
1318 data = img.read()
1319
1320 ramdisk_img.close()
1321 img.close()
1322
1323 return data
1324
1325
1326def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1327 info_dict=None):
1328 """Return a File object with the desired vendor boot image.
1329
1330 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1331 the source files in 'unpack_dir'/'tree_subdir'."""
1332
1333 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1334 if os.path.exists(prebuilt_path):
1335 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1336 return File.FromLocalFile(name, prebuilt_path)
1337
1338 logger.info("building image from target_files %s...", tree_subdir)
1339
1340 if info_dict is None:
1341 info_dict = OPTIONS.info_dict
1342
1343 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1344 if data:
1345 return File(name, data)
1346 return None
1347
1348
Narayan Kamatha07bf042017-08-14 14:49:21 +01001349def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001350 """Gunzips the given gzip compressed file to a given output file."""
1351 with gzip.open(in_filename, "rb") as in_file, \
1352 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001353 shutil.copyfileobj(in_file, out_file)
1354
1355
Tao Bao0ff15de2019-03-20 11:26:06 -07001356def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001357 """Unzips the archive to the given directory.
1358
1359 Args:
1360 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001361 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001362 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1363 archvie. Non-matching patterns will be filtered out. If there's no match
1364 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001365 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001366 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001367 if patterns is not None:
1368 # Filter out non-matching patterns. unzip will complain otherwise.
1369 with zipfile.ZipFile(filename) as input_zip:
1370 names = input_zip.namelist()
1371 filtered = [
1372 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1373
1374 # There isn't any matching files. Don't unzip anything.
1375 if not filtered:
1376 return
1377 cmd.extend(filtered)
1378
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001379 RunAndCheckOutput(cmd)
1380
1381
Doug Zongker75f17362009-12-08 13:46:44 -08001382def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001383 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001384
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001385 Args:
1386 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1387 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1388
1389 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1390 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001391
Tao Bao1c830bf2017-12-25 10:43:47 -08001392 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001393 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001394 """
Doug Zongkereef39442009-04-02 12:14:19 -07001395
Tao Bao1c830bf2017-12-25 10:43:47 -08001396 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001397 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1398 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001399 UnzipToDir(m.group(1), tmp, pattern)
1400 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001401 filename = m.group(1)
1402 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001403 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001404
Tao Baodba59ee2018-01-09 13:21:02 -08001405 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001406
1407
Yifan Hong8a66a712019-04-04 15:37:57 -07001408def GetUserImage(which, tmpdir, input_zip,
1409 info_dict=None,
1410 allow_shared_blocks=None,
1411 hashtree_info_generator=None,
1412 reset_file_map=False):
1413 """Returns an Image object suitable for passing to BlockImageDiff.
1414
1415 This function loads the specified image from the given path. If the specified
1416 image is sparse, it also performs additional processing for OTA purpose. For
1417 example, it always adds block 0 to clobbered blocks list. It also detects
1418 files that cannot be reconstructed from the block list, for whom we should
1419 avoid applying imgdiff.
1420
1421 Args:
1422 which: The partition name.
1423 tmpdir: The directory that contains the prebuilt image and block map file.
1424 input_zip: The target-files ZIP archive.
1425 info_dict: The dict to be looked up for relevant info.
1426 allow_shared_blocks: If image is sparse, whether having shared blocks is
1427 allowed. If none, it is looked up from info_dict.
1428 hashtree_info_generator: If present and image is sparse, generates the
1429 hashtree_info for this sparse image.
1430 reset_file_map: If true and image is sparse, reset file map before returning
1431 the image.
1432 Returns:
1433 A Image object. If it is a sparse image and reset_file_map is False, the
1434 image will have file_map info loaded.
1435 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001436 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001437 info_dict = LoadInfoDict(input_zip)
1438
1439 is_sparse = info_dict.get("extfs_sparse_flag")
1440
1441 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1442 # shared blocks (i.e. some blocks will show up in multiple files' block
1443 # list). We can only allocate such shared blocks to the first "owner", and
1444 # disable imgdiff for all later occurrences.
1445 if allow_shared_blocks is None:
1446 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1447
1448 if is_sparse:
1449 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1450 hashtree_info_generator)
1451 if reset_file_map:
1452 img.ResetFileMap()
1453 return img
1454 else:
1455 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1456
1457
1458def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1459 """Returns a Image object suitable for passing to BlockImageDiff.
1460
1461 This function loads the specified non-sparse image from the given path.
1462
1463 Args:
1464 which: The partition name.
1465 tmpdir: The directory that contains the prebuilt image and block map file.
1466 Returns:
1467 A Image object.
1468 """
1469 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1470 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1471
1472 # The image and map files must have been created prior to calling
1473 # ota_from_target_files.py (since LMP).
1474 assert os.path.exists(path) and os.path.exists(mappath)
1475
Tianjie Xu41976c72019-07-03 13:57:01 -07001476 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1477
Yifan Hong8a66a712019-04-04 15:37:57 -07001478
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001479def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1480 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001481 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1482
1483 This function loads the specified sparse image from the given path, and
1484 performs additional processing for OTA purpose. For example, it always adds
1485 block 0 to clobbered blocks list. It also detects files that cannot be
1486 reconstructed from the block list, for whom we should avoid applying imgdiff.
1487
1488 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001489 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001490 tmpdir: The directory that contains the prebuilt image and block map file.
1491 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001492 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001493 hashtree_info_generator: If present, generates the hashtree_info for this
1494 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001495 Returns:
1496 A SparseImage object, with file_map info loaded.
1497 """
Tao Baoc765cca2018-01-31 17:32:40 -08001498 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1499 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1500
1501 # The image and map files must have been created prior to calling
1502 # ota_from_target_files.py (since LMP).
1503 assert os.path.exists(path) and os.path.exists(mappath)
1504
1505 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1506 # it to clobbered_blocks so that it will be written to the target
1507 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1508 clobbered_blocks = "0"
1509
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001510 image = sparse_img.SparseImage(
1511 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1512 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001513
1514 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1515 # if they contain all zeros. We can't reconstruct such a file from its block
1516 # list. Tag such entries accordingly. (Bug: 65213616)
1517 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001518 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001519 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001520 continue
1521
Tom Cherryd14b8952018-08-09 14:26:00 -07001522 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1523 # filename listed in system.map may contain an additional leading slash
1524 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1525 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001526 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001527
Tom Cherryd14b8952018-08-09 14:26:00 -07001528 # Special handling another case, where files not under /system
1529 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001530 if which == 'system' and not arcname.startswith('SYSTEM'):
1531 arcname = 'ROOT/' + arcname
1532
1533 assert arcname in input_zip.namelist(), \
1534 "Failed to find the ZIP entry for {}".format(entry)
1535
Tao Baoc765cca2018-01-31 17:32:40 -08001536 info = input_zip.getinfo(arcname)
1537 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001538
1539 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001540 # image, check the original block list to determine its completeness. Note
1541 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001542 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001543 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001544
Tao Baoc765cca2018-01-31 17:32:40 -08001545 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1546 ranges.extra['incomplete'] = True
1547
1548 return image
1549
1550
Doug Zongkereef39442009-04-02 12:14:19 -07001551def GetKeyPasswords(keylist):
1552 """Given a list of keys, prompt the user to enter passwords for
1553 those which require them. Return a {key: password} dict. password
1554 will be None if the key has no password."""
1555
Doug Zongker8ce7c252009-05-22 13:34:54 -07001556 no_passwords = []
1557 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001558 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001559 devnull = open("/dev/null", "w+b")
1560 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001561 # We don't need a password for things that aren't really keys.
1562 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001563 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001564 continue
1565
T.R. Fullhart37e10522013-03-18 10:31:26 -07001566 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001567 "-inform", "DER", "-nocrypt"],
1568 stdin=devnull.fileno(),
1569 stdout=devnull.fileno(),
1570 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001571 p.communicate()
1572 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001573 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001574 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001575 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001576 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1577 "-inform", "DER", "-passin", "pass:"],
1578 stdin=devnull.fileno(),
1579 stdout=devnull.fileno(),
1580 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001581 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001582 if p.returncode == 0:
1583 # Encrypted key with empty string as password.
1584 key_passwords[k] = ''
1585 elif stderr.startswith('Error decrypting key'):
1586 # Definitely encrypted key.
1587 # It would have said "Error reading key" if it didn't parse correctly.
1588 need_passwords.append(k)
1589 else:
1590 # Potentially, a type of key that openssl doesn't understand.
1591 # We'll let the routines in signapk.jar handle it.
1592 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001593 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001594
T.R. Fullhart37e10522013-03-18 10:31:26 -07001595 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001596 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001597 return key_passwords
1598
1599
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001600def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001601 """Gets the minSdkVersion declared in the APK.
1602
changho.shin0f125362019-07-08 10:59:00 +09001603 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001604 This can be both a decimal number (API Level) or a codename.
1605
1606 Args:
1607 apk_name: The APK filename.
1608
1609 Returns:
1610 The parsed SDK version string.
1611
1612 Raises:
1613 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001614 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001615 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001616 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001617 stderr=subprocess.PIPE)
1618 stdoutdata, stderrdata = proc.communicate()
1619 if proc.returncode != 0:
1620 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001621 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001622 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001623
Tao Baof47bf0f2018-03-21 23:28:51 -07001624 for line in stdoutdata.split("\n"):
1625 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001626 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1627 if m:
1628 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001629 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001630
1631
1632def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001633 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001634
Tao Baof47bf0f2018-03-21 23:28:51 -07001635 If minSdkVersion is set to a codename, it is translated to a number using the
1636 provided map.
1637
1638 Args:
1639 apk_name: The APK filename.
1640
1641 Returns:
1642 The parsed SDK version number.
1643
1644 Raises:
1645 ExternalError: On failing to get the min SDK version number.
1646 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001647 version = GetMinSdkVersion(apk_name)
1648 try:
1649 return int(version)
1650 except ValueError:
1651 # Not a decimal number. Codename?
1652 if version in codename_to_api_level_map:
1653 return codename_to_api_level_map[version]
1654 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001655 raise ExternalError(
1656 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1657 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001658
1659
1660def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001661 codename_to_api_level_map=None, whole_file=False,
1662 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001663 """Sign the input_name zip/jar/apk, producing output_name. Use the
1664 given key and password (the latter may be None if the key does not
1665 have a password.
1666
Doug Zongker951495f2009-08-14 12:44:19 -07001667 If whole_file is true, use the "-w" option to SignApk to embed a
1668 signature that covers the whole file in the archive comment of the
1669 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001670
1671 min_api_level is the API Level (int) of the oldest platform this file may end
1672 up on. If not specified for an APK, the API Level is obtained by interpreting
1673 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1674
1675 codename_to_api_level_map is needed to translate the codename which may be
1676 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001677
1678 Caller may optionally specify extra args to be passed to SignApk, which
1679 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001680 """
Tao Bao76def242017-11-21 09:25:31 -08001681 if codename_to_api_level_map is None:
1682 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001683 if extra_signapk_args is None:
1684 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001685
Alex Klyubin9667b182015-12-10 13:38:50 -08001686 java_library_path = os.path.join(
1687 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1688
Tao Baoe95540e2016-11-08 12:08:53 -08001689 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1690 ["-Djava.library.path=" + java_library_path,
1691 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001692 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001693 if whole_file:
1694 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001695
1696 min_sdk_version = min_api_level
1697 if min_sdk_version is None:
1698 if not whole_file:
1699 min_sdk_version = GetMinSdkVersionInt(
1700 input_name, codename_to_api_level_map)
1701 if min_sdk_version is not None:
1702 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1703
T.R. Fullhart37e10522013-03-18 10:31:26 -07001704 cmd.extend([key + OPTIONS.public_key_suffix,
1705 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001706 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001707
Tao Bao73dd4f42018-10-04 16:25:33 -07001708 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001709 if password is not None:
1710 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001711 stdoutdata, _ = proc.communicate(password)
1712 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001713 raise ExternalError(
1714 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001715 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001716
Doug Zongkereef39442009-04-02 12:14:19 -07001717
Doug Zongker37974732010-09-16 17:44:38 -07001718def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001719 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001720
Tao Bao9dd909e2017-11-14 11:27:32 -08001721 For non-AVB images, raise exception if the data is too big. Print a warning
1722 if the data is nearing the maximum size.
1723
1724 For AVB images, the actual image size should be identical to the limit.
1725
1726 Args:
1727 data: A string that contains all the data for the partition.
1728 target: The partition name. The ".img" suffix is optional.
1729 info_dict: The dict to be looked up for relevant info.
1730 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001731 if target.endswith(".img"):
1732 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001733 mount_point = "/" + target
1734
Ying Wangf8824af2014-06-03 14:07:27 -07001735 fs_type = None
1736 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001737 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001738 if mount_point == "/userdata":
1739 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001740 p = info_dict["fstab"][mount_point]
1741 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001742 device = p.device
1743 if "/" in device:
1744 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001745 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001746 if not fs_type or not limit:
1747 return
Doug Zongkereef39442009-04-02 12:14:19 -07001748
Andrew Boie0f9aec82012-02-14 09:32:52 -08001749 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001750 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1751 # path.
1752 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1753 if size != limit:
1754 raise ExternalError(
1755 "Mismatching image size for %s: expected %d actual %d" % (
1756 target, limit, size))
1757 else:
1758 pct = float(size) * 100.0 / limit
1759 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1760 if pct >= 99.0:
1761 raise ExternalError(msg)
1762 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001763 logger.warning("\n WARNING: %s\n", msg)
1764 else:
1765 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001766
1767
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001768def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001769 """Parses the APK certs info from a given target-files zip.
1770
1771 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1772 tuple with the following elements: (1) a dictionary that maps packages to
1773 certs (based on the "certificate" and "private_key" attributes in the file;
1774 (2) a string representing the extension of compressed APKs in the target files
1775 (e.g ".gz", ".bro").
1776
1777 Args:
1778 tf_zip: The input target_files ZipFile (already open).
1779
1780 Returns:
1781 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1782 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1783 no compressed APKs.
1784 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001785 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001786 compressed_extension = None
1787
Tao Bao0f990332017-09-08 19:02:54 -07001788 # META/apkcerts.txt contains the info for _all_ the packages known at build
1789 # time. Filter out the ones that are not installed.
1790 installed_files = set()
1791 for name in tf_zip.namelist():
1792 basename = os.path.basename(name)
1793 if basename:
1794 installed_files.add(basename)
1795
Tao Baoda30cfa2017-12-01 16:19:46 -08001796 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001797 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001798 if not line:
1799 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001800 m = re.match(
1801 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham96c9e6e2020-04-03 15:36:23 -07001802 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
1803 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08001804 line)
1805 if not m:
1806 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001807
Tao Bao818ddf52018-01-05 11:17:34 -08001808 matches = m.groupdict()
1809 cert = matches["CERT"]
1810 privkey = matches["PRIVKEY"]
1811 name = matches["NAME"]
1812 this_compressed_extension = matches["COMPRESSED"]
1813
1814 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1815 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1816 if cert in SPECIAL_CERT_STRINGS and not privkey:
1817 certmap[name] = cert
1818 elif (cert.endswith(OPTIONS.public_key_suffix) and
1819 privkey.endswith(OPTIONS.private_key_suffix) and
1820 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1821 certmap[name] = cert[:-public_key_suffix_len]
1822 else:
1823 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1824
1825 if not this_compressed_extension:
1826 continue
1827
1828 # Only count the installed files.
1829 filename = name + '.' + this_compressed_extension
1830 if filename not in installed_files:
1831 continue
1832
1833 # Make sure that all the values in the compression map have the same
1834 # extension. We don't support multiple compression methods in the same
1835 # system image.
1836 if compressed_extension:
1837 if this_compressed_extension != compressed_extension:
1838 raise ValueError(
1839 "Multiple compressed extensions: {} vs {}".format(
1840 compressed_extension, this_compressed_extension))
1841 else:
1842 compressed_extension = this_compressed_extension
1843
1844 return (certmap,
1845 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001846
1847
Doug Zongkereef39442009-04-02 12:14:19 -07001848COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001849Global options
1850
1851 -p (--path) <dir>
1852 Prepend <dir>/bin to the list of places to search for binaries run by this
1853 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001854
Doug Zongker05d3dea2009-06-22 11:32:31 -07001855 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001856 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001857
Tao Bao30df8b42018-04-23 15:32:53 -07001858 -x (--extra) <key=value>
1859 Add a key/value pair to the 'extras' dict, which device-specific extension
1860 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001861
Doug Zongkereef39442009-04-02 12:14:19 -07001862 -v (--verbose)
1863 Show command lines being executed.
1864
1865 -h (--help)
1866 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07001867
1868 --logfile <file>
1869 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07001870"""
1871
1872def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001873 print(docstring.rstrip("\n"))
1874 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001875
1876
1877def ParseOptions(argv,
1878 docstring,
1879 extra_opts="", extra_long_opts=(),
1880 extra_option_handler=None):
1881 """Parse the options in argv and return any arguments that aren't
1882 flags. docstring is the calling module's docstring, to be displayed
1883 for errors and -h. extra_opts and extra_long_opts are for flags
1884 defined by the caller, which are processed by passing them to
1885 extra_option_handler."""
1886
1887 try:
1888 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001889 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001890 ["help", "verbose", "path=", "signapk_path=",
1891 "signapk_shared_library_path=", "extra_signapk_args=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08001892 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001893 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1894 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Dan Austin52903642019-12-12 15:44:00 -08001895 "extra=", "logfile=", "aftl_server=", "aftl_key_path=",
1896 "aftl_manufacturer_key_path=", "aftl_signer_helper="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001897 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001898 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001899 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001900 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001901 sys.exit(2)
1902
Doug Zongkereef39442009-04-02 12:14:19 -07001903 for o, a in opts:
1904 if o in ("-h", "--help"):
1905 Usage(docstring)
1906 sys.exit()
1907 elif o in ("-v", "--verbose"):
1908 OPTIONS.verbose = True
1909 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001910 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001911 elif o in ("--signapk_path",):
1912 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001913 elif o in ("--signapk_shared_library_path",):
1914 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001915 elif o in ("--extra_signapk_args",):
1916 OPTIONS.extra_signapk_args = shlex.split(a)
1917 elif o in ("--java_path",):
1918 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001919 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001920 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08001921 elif o in ("--android_jar_path",):
1922 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001923 elif o in ("--public_key_suffix",):
1924 OPTIONS.public_key_suffix = a
1925 elif o in ("--private_key_suffix",):
1926 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001927 elif o in ("--boot_signer_path",):
1928 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001929 elif o in ("--boot_signer_args",):
1930 OPTIONS.boot_signer_args = shlex.split(a)
1931 elif o in ("--verity_signer_path",):
1932 OPTIONS.verity_signer_path = a
1933 elif o in ("--verity_signer_args",):
1934 OPTIONS.verity_signer_args = shlex.split(a)
Dan Austin52903642019-12-12 15:44:00 -08001935 elif o in ("--aftl_server",):
1936 OPTIONS.aftl_server = a
1937 elif o in ("--aftl_key_path",):
1938 OPTIONS.aftl_key_path = a
1939 elif o in ("--aftl_manufacturer_key_path",):
1940 OPTIONS.aftl_manufacturer_key_path = a
1941 elif o in ("--aftl_signer_helper",):
1942 OPTIONS.aftl_signer_helper = a
Doug Zongker05d3dea2009-06-22 11:32:31 -07001943 elif o in ("-s", "--device_specific"):
1944 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001945 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001946 key, value = a.split("=", 1)
1947 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07001948 elif o in ("--logfile",):
1949 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07001950 else:
1951 if extra_option_handler is None or not extra_option_handler(o, a):
1952 assert False, "unknown option \"%s\"" % (o,)
1953
Doug Zongker85448772014-09-09 14:59:20 -07001954 if OPTIONS.search_path:
1955 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1956 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001957
1958 return args
1959
1960
Tao Bao4c851b12016-09-19 13:54:38 -07001961def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001962 """Make a temp file and add it to the list of things to be deleted
1963 when Cleanup() is called. Return the filename."""
1964 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1965 os.close(fd)
1966 OPTIONS.tempfiles.append(fn)
1967 return fn
1968
1969
Tao Bao1c830bf2017-12-25 10:43:47 -08001970def MakeTempDir(prefix='tmp', suffix=''):
1971 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1972
1973 Returns:
1974 The absolute pathname of the new directory.
1975 """
1976 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1977 OPTIONS.tempfiles.append(dir_name)
1978 return dir_name
1979
1980
Doug Zongkereef39442009-04-02 12:14:19 -07001981def Cleanup():
1982 for i in OPTIONS.tempfiles:
1983 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001984 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001985 else:
1986 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001987 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001988
1989
1990class PasswordManager(object):
1991 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001992 self.editor = os.getenv("EDITOR")
1993 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001994
1995 def GetPasswords(self, items):
1996 """Get passwords corresponding to each string in 'items',
1997 returning a dict. (The dict may have keys in addition to the
1998 values in 'items'.)
1999
2000 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2001 user edit that file to add more needed passwords. If no editor is
2002 available, or $ANDROID_PW_FILE isn't define, prompts the user
2003 interactively in the ordinary way.
2004 """
2005
2006 current = self.ReadFile()
2007
2008 first = True
2009 while True:
2010 missing = []
2011 for i in items:
2012 if i not in current or not current[i]:
2013 missing.append(i)
2014 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002015 if not missing:
2016 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002017
2018 for i in missing:
2019 current[i] = ""
2020
2021 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002022 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002023 if sys.version_info[0] >= 3:
2024 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002025 answer = raw_input("try to edit again? [y]> ").strip()
2026 if answer and answer[0] not in 'yY':
2027 raise RuntimeError("key passwords unavailable")
2028 first = False
2029
2030 current = self.UpdateAndReadFile(current)
2031
Dan Albert8b72aef2015-03-23 19:13:21 -07002032 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002033 """Prompt the user to enter a value (password) for each key in
2034 'current' whose value is fales. Returns a new dict with all the
2035 values.
2036 """
2037 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002038 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002039 if v:
2040 result[k] = v
2041 else:
2042 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002043 result[k] = getpass.getpass(
2044 "Enter password for %s key> " % k).strip()
2045 if result[k]:
2046 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002047 return result
2048
2049 def UpdateAndReadFile(self, current):
2050 if not self.editor or not self.pwfile:
2051 return self.PromptResult(current)
2052
2053 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002054 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002055 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2056 f.write("# (Additional spaces are harmless.)\n\n")
2057
2058 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002059 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002060 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002061 f.write("[[[ %s ]]] %s\n" % (v, k))
2062 if not v and first_line is None:
2063 # position cursor on first line with no password.
2064 first_line = i + 4
2065 f.close()
2066
Tao Bao986ee862018-10-04 15:46:16 -07002067 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002068
2069 return self.ReadFile()
2070
2071 def ReadFile(self):
2072 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002073 if self.pwfile is None:
2074 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002075 try:
2076 f = open(self.pwfile, "r")
2077 for line in f:
2078 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002079 if not line or line[0] == '#':
2080 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002081 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2082 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002083 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002084 else:
2085 result[m.group(2)] = m.group(1)
2086 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002087 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002088 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002089 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002090 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002091
2092
Dan Albert8e0178d2015-01-27 15:53:15 -08002093def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2094 compress_type=None):
2095 import datetime
2096
2097 # http://b/18015246
2098 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2099 # for files larger than 2GiB. We can work around this by adjusting their
2100 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2101 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2102 # it isn't clear to me exactly what circumstances cause this).
2103 # `zipfile.write()` must be used directly to work around this.
2104 #
2105 # This mess can be avoided if we port to python3.
2106 saved_zip64_limit = zipfile.ZIP64_LIMIT
2107 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2108
2109 if compress_type is None:
2110 compress_type = zip_file.compression
2111 if arcname is None:
2112 arcname = filename
2113
2114 saved_stat = os.stat(filename)
2115
2116 try:
2117 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2118 # file to be zipped and reset it when we're done.
2119 os.chmod(filename, perms)
2120
2121 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002122 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2123 # intentional. zip stores datetimes in local time without a time zone
2124 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2125 # in the zip archive.
2126 local_epoch = datetime.datetime.fromtimestamp(0)
2127 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002128 os.utime(filename, (timestamp, timestamp))
2129
2130 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2131 finally:
2132 os.chmod(filename, saved_stat.st_mode)
2133 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2134 zipfile.ZIP64_LIMIT = saved_zip64_limit
2135
2136
Tao Bao58c1b962015-05-20 09:32:18 -07002137def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002138 compress_type=None):
2139 """Wrap zipfile.writestr() function to work around the zip64 limit.
2140
2141 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2142 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2143 when calling crc32(bytes).
2144
2145 But it still works fine to write a shorter string into a large zip file.
2146 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2147 when we know the string won't be too long.
2148 """
2149
2150 saved_zip64_limit = zipfile.ZIP64_LIMIT
2151 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2152
2153 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2154 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002155 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002156 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002157 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002158 else:
Tao Baof3282b42015-04-01 11:21:55 -07002159 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002160 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2161 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2162 # such a case (since
2163 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2164 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2165 # permission bits. We follow the logic in Python 3 to get consistent
2166 # behavior between using the two versions.
2167 if not zinfo.external_attr:
2168 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002169
2170 # If compress_type is given, it overrides the value in zinfo.
2171 if compress_type is not None:
2172 zinfo.compress_type = compress_type
2173
Tao Bao58c1b962015-05-20 09:32:18 -07002174 # If perms is given, it has a priority.
2175 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002176 # If perms doesn't set the file type, mark it as a regular file.
2177 if perms & 0o770000 == 0:
2178 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002179 zinfo.external_attr = perms << 16
2180
Tao Baof3282b42015-04-01 11:21:55 -07002181 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002182 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2183
Dan Albert8b72aef2015-03-23 19:13:21 -07002184 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002185 zipfile.ZIP64_LIMIT = saved_zip64_limit
2186
2187
Tao Bao89d7ab22017-12-14 17:05:33 -08002188def ZipDelete(zip_filename, entries):
2189 """Deletes entries from a ZIP file.
2190
2191 Since deleting entries from a ZIP file is not supported, it shells out to
2192 'zip -d'.
2193
2194 Args:
2195 zip_filename: The name of the ZIP file.
2196 entries: The name of the entry, or the list of names to be deleted.
2197
2198 Raises:
2199 AssertionError: In case of non-zero return from 'zip'.
2200 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002201 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002202 entries = [entries]
2203 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002204 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002205
2206
Tao Baof3282b42015-04-01 11:21:55 -07002207def ZipClose(zip_file):
2208 # http://b/18015246
2209 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2210 # central directory.
2211 saved_zip64_limit = zipfile.ZIP64_LIMIT
2212 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2213
2214 zip_file.close()
2215
2216 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002217
2218
2219class DeviceSpecificParams(object):
2220 module = None
2221 def __init__(self, **kwargs):
2222 """Keyword arguments to the constructor become attributes of this
2223 object, which is passed to all functions in the device-specific
2224 module."""
Tao Bao38884282019-07-10 22:20:56 -07002225 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002226 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002227 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002228
2229 if self.module is None:
2230 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002231 if not path:
2232 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002233 try:
2234 if os.path.isdir(path):
2235 info = imp.find_module("releasetools", [path])
2236 else:
2237 d, f = os.path.split(path)
2238 b, x = os.path.splitext(f)
2239 if x == ".py":
2240 f = b
2241 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002242 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002243 self.module = imp.load_module("device_specific", *info)
2244 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002245 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002246
2247 def _DoCall(self, function_name, *args, **kwargs):
2248 """Call the named function in the device-specific module, passing
2249 the given args and kwargs. The first argument to the call will be
2250 the DeviceSpecific object itself. If there is no module, or the
2251 module does not define the function, return the value of the
2252 'default' kwarg (which itself defaults to None)."""
2253 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002254 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002255 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2256
2257 def FullOTA_Assertions(self):
2258 """Called after emitting the block of assertions at the top of a
2259 full OTA package. Implementations can add whatever additional
2260 assertions they like."""
2261 return self._DoCall("FullOTA_Assertions")
2262
Doug Zongkere5ff5902012-01-17 10:55:37 -08002263 def FullOTA_InstallBegin(self):
2264 """Called at the start of full OTA installation."""
2265 return self._DoCall("FullOTA_InstallBegin")
2266
Yifan Hong10c530d2018-12-27 17:34:18 -08002267 def FullOTA_GetBlockDifferences(self):
2268 """Called during full OTA installation and verification.
2269 Implementation should return a list of BlockDifference objects describing
2270 the update on each additional partitions.
2271 """
2272 return self._DoCall("FullOTA_GetBlockDifferences")
2273
Doug Zongker05d3dea2009-06-22 11:32:31 -07002274 def FullOTA_InstallEnd(self):
2275 """Called at the end of full OTA installation; typically this is
2276 used to install the image for the device's baseband processor."""
2277 return self._DoCall("FullOTA_InstallEnd")
2278
2279 def IncrementalOTA_Assertions(self):
2280 """Called after emitting the block of assertions at the top of an
2281 incremental OTA package. Implementations can add whatever
2282 additional assertions they like."""
2283 return self._DoCall("IncrementalOTA_Assertions")
2284
Doug Zongkere5ff5902012-01-17 10:55:37 -08002285 def IncrementalOTA_VerifyBegin(self):
2286 """Called at the start of the verification phase of incremental
2287 OTA installation; additional checks can be placed here to abort
2288 the script before any changes are made."""
2289 return self._DoCall("IncrementalOTA_VerifyBegin")
2290
Doug Zongker05d3dea2009-06-22 11:32:31 -07002291 def IncrementalOTA_VerifyEnd(self):
2292 """Called at the end of the verification phase of incremental OTA
2293 installation; additional checks can be placed here to abort the
2294 script before any changes are made."""
2295 return self._DoCall("IncrementalOTA_VerifyEnd")
2296
Doug Zongkere5ff5902012-01-17 10:55:37 -08002297 def IncrementalOTA_InstallBegin(self):
2298 """Called at the start of incremental OTA installation (after
2299 verification is complete)."""
2300 return self._DoCall("IncrementalOTA_InstallBegin")
2301
Yifan Hong10c530d2018-12-27 17:34:18 -08002302 def IncrementalOTA_GetBlockDifferences(self):
2303 """Called during incremental OTA installation and verification.
2304 Implementation should return a list of BlockDifference objects describing
2305 the update on each additional partitions.
2306 """
2307 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2308
Doug Zongker05d3dea2009-06-22 11:32:31 -07002309 def IncrementalOTA_InstallEnd(self):
2310 """Called at the end of incremental OTA installation; typically
2311 this is used to install the image for the device's baseband
2312 processor."""
2313 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002314
Tao Bao9bc6bb22015-11-09 16:58:28 -08002315 def VerifyOTA_Assertions(self):
2316 return self._DoCall("VerifyOTA_Assertions")
2317
Tao Bao76def242017-11-21 09:25:31 -08002318
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002319class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002320 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002321 self.name = name
2322 self.data = data
2323 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002324 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002325 self.sha1 = sha1(data).hexdigest()
2326
2327 @classmethod
2328 def FromLocalFile(cls, name, diskname):
2329 f = open(diskname, "rb")
2330 data = f.read()
2331 f.close()
2332 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002333
2334 def WriteToTemp(self):
2335 t = tempfile.NamedTemporaryFile()
2336 t.write(self.data)
2337 t.flush()
2338 return t
2339
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002340 def WriteToDir(self, d):
2341 with open(os.path.join(d, self.name), "wb") as fp:
2342 fp.write(self.data)
2343
Geremy Condra36bd3652014-02-06 19:45:10 -08002344 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002345 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002346
Tao Bao76def242017-11-21 09:25:31 -08002347
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002348DIFF_PROGRAM_BY_EXT = {
2349 ".gz" : "imgdiff",
2350 ".zip" : ["imgdiff", "-z"],
2351 ".jar" : ["imgdiff", "-z"],
2352 ".apk" : ["imgdiff", "-z"],
2353 ".img" : "imgdiff",
2354 }
2355
Tao Bao76def242017-11-21 09:25:31 -08002356
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002357class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002358 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002359 self.tf = tf
2360 self.sf = sf
2361 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002362 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002363
2364 def ComputePatch(self):
2365 """Compute the patch (as a string of data) needed to turn sf into
2366 tf. Returns the same tuple as GetPatch()."""
2367
2368 tf = self.tf
2369 sf = self.sf
2370
Doug Zongker24cd2802012-08-14 16:36:15 -07002371 if self.diff_program:
2372 diff_program = self.diff_program
2373 else:
2374 ext = os.path.splitext(tf.name)[1]
2375 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002376
2377 ttemp = tf.WriteToTemp()
2378 stemp = sf.WriteToTemp()
2379
2380 ext = os.path.splitext(tf.name)[1]
2381
2382 try:
2383 ptemp = tempfile.NamedTemporaryFile()
2384 if isinstance(diff_program, list):
2385 cmd = copy.copy(diff_program)
2386 else:
2387 cmd = [diff_program]
2388 cmd.append(stemp.name)
2389 cmd.append(ttemp.name)
2390 cmd.append(ptemp.name)
2391 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002392 err = []
2393 def run():
2394 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002395 if e:
2396 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002397 th = threading.Thread(target=run)
2398 th.start()
2399 th.join(timeout=300) # 5 mins
2400 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002401 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002402 p.terminate()
2403 th.join(5)
2404 if th.is_alive():
2405 p.kill()
2406 th.join()
2407
Tianjie Xua2a9f992018-01-05 15:15:54 -08002408 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002409 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002410 self.patch = None
2411 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002412 diff = ptemp.read()
2413 finally:
2414 ptemp.close()
2415 stemp.close()
2416 ttemp.close()
2417
2418 self.patch = diff
2419 return self.tf, self.sf, self.patch
2420
2421
2422 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002423 """Returns a tuple of (target_file, source_file, patch_data).
2424
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002425 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002426 computing the patch failed.
2427 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002428 return self.tf, self.sf, self.patch
2429
2430
2431def ComputeDifferences(diffs):
2432 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002433 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002434
2435 # Do the largest files first, to try and reduce the long-pole effect.
2436 by_size = [(i.tf.size, i) for i in diffs]
2437 by_size.sort(reverse=True)
2438 by_size = [i[1] for i in by_size]
2439
2440 lock = threading.Lock()
2441 diff_iter = iter(by_size) # accessed under lock
2442
2443 def worker():
2444 try:
2445 lock.acquire()
2446 for d in diff_iter:
2447 lock.release()
2448 start = time.time()
2449 d.ComputePatch()
2450 dur = time.time() - start
2451 lock.acquire()
2452
2453 tf, sf, patch = d.GetPatch()
2454 if sf.name == tf.name:
2455 name = tf.name
2456 else:
2457 name = "%s (%s)" % (tf.name, sf.name)
2458 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002459 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002460 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002461 logger.info(
2462 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2463 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002464 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002465 except Exception:
2466 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002467 raise
2468
2469 # start worker threads; wait for them all to finish.
2470 threads = [threading.Thread(target=worker)
2471 for i in range(OPTIONS.worker_threads)]
2472 for th in threads:
2473 th.start()
2474 while threads:
2475 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002476
2477
Dan Albert8b72aef2015-03-23 19:13:21 -07002478class BlockDifference(object):
2479 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002480 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002481 self.tgt = tgt
2482 self.src = src
2483 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002484 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002485 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002486
Tao Baodd2a5892015-03-12 12:32:37 -07002487 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002488 version = max(
2489 int(i) for i in
2490 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002491 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002492 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002493
Tianjie Xu41976c72019-07-03 13:57:01 -07002494 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2495 version=self.version,
2496 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002497 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002498 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002499 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002500 self.touched_src_ranges = b.touched_src_ranges
2501 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002502
Yifan Hong10c530d2018-12-27 17:34:18 -08002503 # On devices with dynamic partitions, for new partitions,
2504 # src is None but OPTIONS.source_info_dict is not.
2505 if OPTIONS.source_info_dict is None:
2506 is_dynamic_build = OPTIONS.info_dict.get(
2507 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002508 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002509 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002510 is_dynamic_build = OPTIONS.source_info_dict.get(
2511 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002512 is_dynamic_source = partition in shlex.split(
2513 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002514
Yifan Hongbb2658d2019-01-25 12:30:58 -08002515 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002516 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2517
Yifan Hongbb2658d2019-01-25 12:30:58 -08002518 # For dynamic partitions builds, check partition list in both source
2519 # and target build because new partitions may be added, and existing
2520 # partitions may be removed.
2521 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2522
Yifan Hong10c530d2018-12-27 17:34:18 -08002523 if is_dynamic:
2524 self.device = 'map_partition("%s")' % partition
2525 else:
2526 if OPTIONS.source_info_dict is None:
Yifan Hongae6e0d52020-05-07 12:38:53 -07002527 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
2528 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08002529 else:
Yifan Hongae6e0d52020-05-07 12:38:53 -07002530 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
2531 OPTIONS.source_info_dict)
2532 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002533
Tao Baod8d14be2016-02-04 14:26:02 -08002534 @property
2535 def required_cache(self):
2536 return self._required_cache
2537
Tao Bao76def242017-11-21 09:25:31 -08002538 def WriteScript(self, script, output_zip, progress=None,
2539 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002540 if not self.src:
2541 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002542 script.Print("Patching %s image unconditionally..." % (self.partition,))
2543 else:
2544 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002545
Dan Albert8b72aef2015-03-23 19:13:21 -07002546 if progress:
2547 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002548 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002549
2550 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002551 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002552
Tao Bao9bc6bb22015-11-09 16:58:28 -08002553 def WriteStrictVerifyScript(self, script):
2554 """Verify all the blocks in the care_map, including clobbered blocks.
2555
2556 This differs from the WriteVerifyScript() function: a) it prints different
2557 error messages; b) it doesn't allow half-way updated images to pass the
2558 verification."""
2559
2560 partition = self.partition
2561 script.Print("Verifying %s..." % (partition,))
2562 ranges = self.tgt.care_map
2563 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002564 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002565 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2566 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002567 self.device, ranges_str,
2568 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002569 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002570 script.AppendExtra("")
2571
Tao Baod522bdc2016-04-12 15:53:16 -07002572 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002573 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002574
2575 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002576 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002577 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002578
2579 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002580 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002581 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002582 ranges = self.touched_src_ranges
2583 expected_sha1 = self.touched_src_sha1
2584 else:
2585 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2586 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002587
2588 # No blocks to be checked, skipping.
2589 if not ranges:
2590 return
2591
Tao Bao5ece99d2015-05-12 11:42:31 -07002592 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002593 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002594 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002595 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2596 '"%s.patch.dat")) then' % (
2597 self.device, ranges_str, expected_sha1,
2598 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002599 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002600 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002601
Tianjie Xufc3422a2015-12-15 11:53:59 -08002602 if self.version >= 4:
2603
2604 # Bug: 21124327
2605 # When generating incrementals for the system and vendor partitions in
2606 # version 4 or newer, explicitly check the first block (which contains
2607 # the superblock) of the partition to see if it's what we expect. If
2608 # this check fails, give an explicit log message about the partition
2609 # having been remounted R/W (the most likely explanation).
2610 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002611 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002612
2613 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002614 if partition == "system":
2615 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2616 else:
2617 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002618 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002619 'ifelse (block_image_recover({device}, "{ranges}") && '
2620 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002621 'package_extract_file("{partition}.transfer.list"), '
2622 '"{partition}.new.dat", "{partition}.patch.dat"), '
2623 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002624 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002625 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002626 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002627
Tao Baodd2a5892015-03-12 12:32:37 -07002628 # Abort the OTA update. Note that the incremental OTA cannot be applied
2629 # even if it may match the checksum of the target partition.
2630 # a) If version < 3, operations like move and erase will make changes
2631 # unconditionally and damage the partition.
2632 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002633 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002634 if partition == "system":
2635 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2636 else:
2637 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2638 script.AppendExtra((
2639 'abort("E%d: %s partition has unexpected contents");\n'
2640 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002641
Yifan Hong10c530d2018-12-27 17:34:18 -08002642 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002643 partition = self.partition
2644 script.Print('Verifying the updated %s image...' % (partition,))
2645 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2646 ranges = self.tgt.care_map
2647 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002648 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002649 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002650 self.device, ranges_str,
2651 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002652
2653 # Bug: 20881595
2654 # Verify that extended blocks are really zeroed out.
2655 if self.tgt.extended:
2656 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002657 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002658 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002659 self.device, ranges_str,
2660 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002661 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002662 if partition == "system":
2663 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2664 else:
2665 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002666 script.AppendExtra(
2667 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002668 ' abort("E%d: %s partition has unexpected non-zero contents after '
2669 'OTA update");\n'
2670 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002671 else:
2672 script.Print('Verified the updated %s image.' % (partition,))
2673
Tianjie Xu209db462016-05-24 17:34:52 -07002674 if partition == "system":
2675 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2676 else:
2677 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2678
Tao Bao5fcaaef2015-06-01 13:40:49 -07002679 script.AppendExtra(
2680 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002681 ' abort("E%d: %s partition has unexpected contents after OTA '
2682 'update");\n'
2683 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002684
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002685 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002686 ZipWrite(output_zip,
2687 '{}.transfer.list'.format(self.path),
2688 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002689
Tao Bao76def242017-11-21 09:25:31 -08002690 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2691 # its size. Quailty 9 almost triples the compression time but doesn't
2692 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002693 # zip | brotli(quality 6) | brotli(quality 9)
2694 # compressed_size: 942M | 869M (~8% reduced) | 854M
2695 # compression_time: 75s | 265s | 719s
2696 # decompression_time: 15s | 25s | 25s
2697
2698 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002699 brotli_cmd = ['brotli', '--quality=6',
2700 '--output={}.new.dat.br'.format(self.path),
2701 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002702 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002703 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002704
2705 new_data_name = '{}.new.dat.br'.format(self.partition)
2706 ZipWrite(output_zip,
2707 '{}.new.dat.br'.format(self.path),
2708 new_data_name,
2709 compress_type=zipfile.ZIP_STORED)
2710 else:
2711 new_data_name = '{}.new.dat'.format(self.partition)
2712 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2713
Dan Albert8e0178d2015-01-27 15:53:15 -08002714 ZipWrite(output_zip,
2715 '{}.patch.dat'.format(self.path),
2716 '{}.patch.dat'.format(self.partition),
2717 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002718
Tianjie Xu209db462016-05-24 17:34:52 -07002719 if self.partition == "system":
2720 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2721 else:
2722 code = ErrorCode.VENDOR_UPDATE_FAILURE
2723
Yifan Hong10c530d2018-12-27 17:34:18 -08002724 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002725 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002726 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002727 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002728 device=self.device, partition=self.partition,
2729 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002730 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002731
Dan Albert8b72aef2015-03-23 19:13:21 -07002732 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002733 data = source.ReadRangeSet(ranges)
2734 ctx = sha1()
2735
2736 for p in data:
2737 ctx.update(p)
2738
2739 return ctx.hexdigest()
2740
Tao Baoe9b61912015-07-09 17:37:49 -07002741 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2742 """Return the hash value for all zero blocks."""
2743 zero_block = '\x00' * 4096
2744 ctx = sha1()
2745 for _ in range(num_blocks):
2746 ctx.update(zero_block)
2747
2748 return ctx.hexdigest()
2749
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002750
Tianjie Xu41976c72019-07-03 13:57:01 -07002751# Expose these two classes to support vendor-specific scripts
2752DataImage = images.DataImage
2753EmptyImage = images.EmptyImage
2754
Tao Bao76def242017-11-21 09:25:31 -08002755
Doug Zongker96a57e72010-09-26 14:57:41 -07002756# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002757PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002758 "ext4": "EMMC",
2759 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002760 "f2fs": "EMMC",
2761 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002762}
Doug Zongker96a57e72010-09-26 14:57:41 -07002763
Yifan Hongae6e0d52020-05-07 12:38:53 -07002764def GetTypeAndDevice(mount_point, info, check_no_slot=True):
2765 """
2766 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
2767 backwards compatibility. It aborts if the fstab entry has slotselect option
2768 (unless check_no_slot is explicitly set to False).
2769 """
Doug Zongker96a57e72010-09-26 14:57:41 -07002770 fstab = info["fstab"]
2771 if fstab:
Yifan Hongae6e0d52020-05-07 12:38:53 -07002772 if check_no_slot:
2773 assert not fstab[mount_point].slotselect, \
2774 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07002775 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2776 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002777 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002778 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002779
2780
Yifan Hongae6e0d52020-05-07 12:38:53 -07002781def GetTypeAndDeviceExpr(mount_point, info):
2782 """
2783 Return the filesystem of the partition, and an edify expression that evaluates
2784 to the device at runtime.
2785 """
2786 fstab = info["fstab"]
2787 if fstab:
2788 p = fstab[mount_point]
2789 device_expr = '"%s"' % fstab[mount_point].device
2790 if p.slotselect:
2791 device_expr = 'add_slot_suffix(%s)' % device_expr
2792 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
2793 else:
2794 raise KeyError
2795
2796
2797def GetEntryForDevice(fstab, device):
2798 """
2799 Returns:
2800 The first entry in fstab whose device is the given value.
2801 """
2802 if not fstab:
2803 return None
2804 for mount_point in fstab:
2805 if fstab[mount_point].device == device:
2806 return fstab[mount_point]
2807 return None
2808
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002809def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002810 """Parses and converts a PEM-encoded certificate into DER-encoded.
2811
2812 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2813
2814 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002815 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002816 """
2817 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002818 save = False
2819 for line in data.split("\n"):
2820 if "--END CERTIFICATE--" in line:
2821 break
2822 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002823 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002824 if "--BEGIN CERTIFICATE--" in line:
2825 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002826 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002827 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002828
Tao Bao04e1f012018-02-04 12:13:35 -08002829
2830def ExtractPublicKey(cert):
2831 """Extracts the public key (PEM-encoded) from the given certificate file.
2832
2833 Args:
2834 cert: The certificate filename.
2835
2836 Returns:
2837 The public key string.
2838
2839 Raises:
2840 AssertionError: On non-zero return from 'openssl'.
2841 """
2842 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2843 # While openssl 1.1 writes the key into the given filename followed by '-out',
2844 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2845 # stdout instead.
2846 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2847 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2848 pubkey, stderrdata = proc.communicate()
2849 assert proc.returncode == 0, \
2850 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2851 return pubkey
2852
2853
Tao Bao1ac886e2019-06-26 11:58:22 -07002854def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002855 """Extracts the AVB public key from the given public or private key.
2856
2857 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002858 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002859 key: The input key file, which should be PEM-encoded public or private key.
2860
2861 Returns:
2862 The path to the extracted AVB public key file.
2863 """
2864 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2865 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002866 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002867 return output
2868
2869
Doug Zongker412c02f2014-02-13 10:58:24 -08002870def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2871 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002872 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002873
Tao Bao6d5d6232018-03-09 17:04:42 -08002874 Most of the space in the boot and recovery images is just the kernel, which is
2875 identical for the two, so the resulting patch should be efficient. Add it to
2876 the output zip, along with a shell script that is run from init.rc on first
2877 boot to actually do the patching and install the new recovery image.
2878
2879 Args:
2880 input_dir: The top-level input directory of the target-files.zip.
2881 output_sink: The callback function that writes the result.
2882 recovery_img: File object for the recovery image.
2883 boot_img: File objects for the boot image.
2884 info_dict: A dict returned by common.LoadInfoDict() on the input
2885 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002886 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002887 if info_dict is None:
2888 info_dict = OPTIONS.info_dict
2889
Tao Bao6d5d6232018-03-09 17:04:42 -08002890 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002891 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2892
2893 if board_uses_vendorimage:
2894 # In this case, the output sink is rooted at VENDOR
2895 recovery_img_path = "etc/recovery.img"
2896 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2897 sh_dir = "bin"
2898 else:
2899 # In this case the output sink is rooted at SYSTEM
2900 recovery_img_path = "vendor/etc/recovery.img"
2901 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2902 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002903
Tao Baof2cffbd2015-07-22 12:33:18 -07002904 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002905 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002906
2907 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002908 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002909 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002910 # With system-root-image, boot and recovery images will have mismatching
2911 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2912 # to handle such a case.
2913 if system_root_image:
2914 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002915 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002916 assert not os.path.exists(path)
2917 else:
2918 diff_program = ["imgdiff"]
2919 if os.path.exists(path):
2920 diff_program.append("-b")
2921 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002922 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002923 else:
2924 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002925
2926 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2927 _, _, patch = d.ComputePatch()
2928 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002929
Dan Albertebb19aa2015-03-27 19:11:53 -07002930 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002931 # The following GetTypeAndDevice()s need to use the path in the target
2932 # info_dict instead of source_info_dict.
Yifan Hongae6e0d52020-05-07 12:38:53 -07002933 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
2934 check_no_slot=False)
2935 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
2936 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07002937 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002938 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002939
Tao Baof2cffbd2015-07-22 12:33:18 -07002940 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002941
2942 # Note that we use /vendor to refer to the recovery resources. This will
2943 # work for a separate vendor partition mounted at /vendor or a
2944 # /system/vendor subdirectory on the system partition, for which init will
2945 # create a symlink from /vendor to /system/vendor.
2946
2947 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002948if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2949 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002950 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002951 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2952 log -t recovery "Installing new recovery image: succeeded" || \\
2953 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002954else
2955 log -t recovery "Recovery image already installed"
2956fi
2957""" % {'type': recovery_type,
2958 'device': recovery_device,
2959 'sha1': recovery_img.sha1,
2960 'size': recovery_img.size}
2961 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002962 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002963if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2964 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002965 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002966 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2967 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2968 log -t recovery "Installing new recovery image: succeeded" || \\
2969 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002970else
2971 log -t recovery "Recovery image already installed"
2972fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002973""" % {'boot_size': boot_img.size,
2974 'boot_sha1': boot_img.sha1,
2975 'recovery_size': recovery_img.size,
2976 'recovery_sha1': recovery_img.sha1,
2977 'boot_type': boot_type,
Yifan Hongae6e0d52020-05-07 12:38:53 -07002978 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee55f62c2020-05-19 13:44:26 -07002979 'recovery_type': recovery_type,
2980 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07002981 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002982
Bill Peckhame868aec2019-09-17 17:06:47 -07002983 # The install script location moved from /system/etc to /system/bin in the L
2984 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2985 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002986
Tao Bao32fcdab2018-10-12 10:30:39 -07002987 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002988
Tao Baoda30cfa2017-12-01 16:19:46 -08002989 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002990
2991
2992class DynamicPartitionUpdate(object):
2993 def __init__(self, src_group=None, tgt_group=None, progress=None,
2994 block_difference=None):
2995 self.src_group = src_group
2996 self.tgt_group = tgt_group
2997 self.progress = progress
2998 self.block_difference = block_difference
2999
3000 @property
3001 def src_size(self):
3002 if not self.block_difference:
3003 return 0
3004 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3005
3006 @property
3007 def tgt_size(self):
3008 if not self.block_difference:
3009 return 0
3010 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3011
3012 @staticmethod
3013 def _GetSparseImageSize(img):
3014 if not img:
3015 return 0
3016 return img.blocksize * img.total_blocks
3017
3018
3019class DynamicGroupUpdate(object):
3020 def __init__(self, src_size=None, tgt_size=None):
3021 # None: group does not exist. 0: no size limits.
3022 self.src_size = src_size
3023 self.tgt_size = tgt_size
3024
3025
3026class DynamicPartitionsDifference(object):
3027 def __init__(self, info_dict, block_diffs, progress_dict=None,
3028 source_info_dict=None):
3029 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003030 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003031
3032 self._remove_all_before_apply = False
3033 if source_info_dict is None:
3034 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003035 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003036
Tao Baof1113e92019-06-18 12:10:14 -07003037 block_diff_dict = collections.OrderedDict(
3038 [(e.partition, e) for e in block_diffs])
3039
Yifan Hong10c530d2018-12-27 17:34:18 -08003040 assert len(block_diff_dict) == len(block_diffs), \
3041 "Duplicated BlockDifference object for {}".format(
3042 [partition for partition, count in
3043 collections.Counter(e.partition for e in block_diffs).items()
3044 if count > 1])
3045
Yifan Hong79997e52019-01-23 16:56:19 -08003046 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003047
3048 for p, block_diff in block_diff_dict.items():
3049 self._partition_updates[p] = DynamicPartitionUpdate()
3050 self._partition_updates[p].block_difference = block_diff
3051
3052 for p, progress in progress_dict.items():
3053 if p in self._partition_updates:
3054 self._partition_updates[p].progress = progress
3055
3056 tgt_groups = shlex.split(info_dict.get(
3057 "super_partition_groups", "").strip())
3058 src_groups = shlex.split(source_info_dict.get(
3059 "super_partition_groups", "").strip())
3060
3061 for g in tgt_groups:
3062 for p in shlex.split(info_dict.get(
3063 "super_%s_partition_list" % g, "").strip()):
3064 assert p in self._partition_updates, \
3065 "{} is in target super_{}_partition_list but no BlockDifference " \
3066 "object is provided.".format(p, g)
3067 self._partition_updates[p].tgt_group = g
3068
3069 for g in src_groups:
3070 for p in shlex.split(source_info_dict.get(
3071 "super_%s_partition_list" % g, "").strip()):
3072 assert p in self._partition_updates, \
3073 "{} is in source super_{}_partition_list but no BlockDifference " \
3074 "object is provided.".format(p, g)
3075 self._partition_updates[p].src_group = g
3076
Yifan Hong45433e42019-01-18 13:55:25 -08003077 target_dynamic_partitions = set(shlex.split(info_dict.get(
3078 "dynamic_partition_list", "").strip()))
3079 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3080 if u.tgt_size)
3081 assert block_diffs_with_target == target_dynamic_partitions, \
3082 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3083 list(target_dynamic_partitions), list(block_diffs_with_target))
3084
3085 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3086 "dynamic_partition_list", "").strip()))
3087 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3088 if u.src_size)
3089 assert block_diffs_with_source == source_dynamic_partitions, \
3090 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3091 list(source_dynamic_partitions), list(block_diffs_with_source))
3092
Yifan Hong10c530d2018-12-27 17:34:18 -08003093 if self._partition_updates:
3094 logger.info("Updating dynamic partitions %s",
3095 self._partition_updates.keys())
3096
Yifan Hong79997e52019-01-23 16:56:19 -08003097 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003098
3099 for g in tgt_groups:
3100 self._group_updates[g] = DynamicGroupUpdate()
3101 self._group_updates[g].tgt_size = int(info_dict.get(
3102 "super_%s_group_size" % g, "0").strip())
3103
3104 for g in src_groups:
3105 if g not in self._group_updates:
3106 self._group_updates[g] = DynamicGroupUpdate()
3107 self._group_updates[g].src_size = int(source_info_dict.get(
3108 "super_%s_group_size" % g, "0").strip())
3109
3110 self._Compute()
3111
3112 def WriteScript(self, script, output_zip, write_verify_script=False):
3113 script.Comment('--- Start patching dynamic partitions ---')
3114 for p, u in self._partition_updates.items():
3115 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3116 script.Comment('Patch partition %s' % p)
3117 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3118 write_verify_script=False)
3119
3120 op_list_path = MakeTempFile()
3121 with open(op_list_path, 'w') as f:
3122 for line in self._op_list:
3123 f.write('{}\n'.format(line))
3124
3125 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3126
3127 script.Comment('Update dynamic partition metadata')
3128 script.AppendExtra('assert(update_dynamic_partitions('
3129 'package_extract_file("dynamic_partitions_op_list")));')
3130
3131 if write_verify_script:
3132 for p, u in self._partition_updates.items():
3133 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3134 u.block_difference.WritePostInstallVerifyScript(script)
3135 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3136
3137 for p, u in self._partition_updates.items():
3138 if u.tgt_size and u.src_size <= u.tgt_size:
3139 script.Comment('Patch partition %s' % p)
3140 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3141 write_verify_script=write_verify_script)
3142 if write_verify_script:
3143 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3144
3145 script.Comment('--- End patching dynamic partitions ---')
3146
3147 def _Compute(self):
3148 self._op_list = list()
3149
3150 def append(line):
3151 self._op_list.append(line)
3152
3153 def comment(line):
3154 self._op_list.append("# %s" % line)
3155
3156 if self._remove_all_before_apply:
3157 comment('Remove all existing dynamic partitions and groups before '
3158 'applying full OTA')
3159 append('remove_all_groups')
3160
3161 for p, u in self._partition_updates.items():
3162 if u.src_group and not u.tgt_group:
3163 append('remove %s' % p)
3164
3165 for p, u in self._partition_updates.items():
3166 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3167 comment('Move partition %s from %s to default' % (p, u.src_group))
3168 append('move %s default' % p)
3169
3170 for p, u in self._partition_updates.items():
3171 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3172 comment('Shrink partition %s from %d to %d' %
3173 (p, u.src_size, u.tgt_size))
3174 append('resize %s %s' % (p, u.tgt_size))
3175
3176 for g, u in self._group_updates.items():
3177 if u.src_size is not None and u.tgt_size is None:
3178 append('remove_group %s' % g)
3179 if (u.src_size is not None and u.tgt_size is not None and
3180 u.src_size > u.tgt_size):
3181 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3182 append('resize_group %s %d' % (g, u.tgt_size))
3183
3184 for g, u in self._group_updates.items():
3185 if u.src_size is None and u.tgt_size is not None:
3186 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3187 append('add_group %s %d' % (g, u.tgt_size))
3188 if (u.src_size is not None and u.tgt_size is not None and
3189 u.src_size < u.tgt_size):
3190 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3191 append('resize_group %s %d' % (g, u.tgt_size))
3192
3193 for p, u in self._partition_updates.items():
3194 if u.tgt_group and not u.src_group:
3195 comment('Add partition %s to group %s' % (p, u.tgt_group))
3196 append('add %s %s' % (p, u.tgt_group))
3197
3198 for p, u in self._partition_updates.items():
3199 if u.tgt_size and u.src_size < u.tgt_size:
3200 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3201 append('resize %s %d' % (p, u.tgt_size))
3202
3203 for p, u in self._partition_updates.items():
3204 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3205 comment('Move partition %s from default to %s' %
3206 (p, u.tgt_group))
3207 append('move %s %s' % (p, u.tgt_group))