blob: c2c6df1a9a726b7c62b80077857d9d7afefa4463 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Kelvin Zhang0876c412020-06-23 15:06:58 -040020import datetime
Doug Zongker8ce7c252009-05-22 13:34:54 -070021import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070022import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070023import getopt
24import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010025import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070026import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070027import json
28import logging
29import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070030import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080031import platform
Doug Zongkereef39442009-04-02 12:14:19 -070032import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070033import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070034import shutil
35import subprocess
36import sys
37import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070038import threading
39import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070040import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080041from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070042
Tianjie Xu41976c72019-07-03 13:57:01 -070043import images
Kelvin Zhang27324132021-03-22 15:38:38 -040044import rangelib
Tao Baoc765cca2018-01-31 17:32:40 -080045import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070046from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070047
Tao Bao32fcdab2018-10-12 10:30:39 -070048logger = logging.getLogger(__name__)
49
Tao Bao986ee862018-10-04 15:46:16 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070052
Dan Albert8b72aef2015-03-23 19:13:21 -070053 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070054 # Set up search path, in order to find framework/ and lib64/. At the time of
55 # running this function, user-supplied search path (`--path`) hasn't been
56 # available. So the value set here is the default, which might be overridden
57 # by commandline flag later.
Kelvin Zhang0876c412020-06-23 15:06:58 -040058 exec_path = os.path.realpath(sys.argv[0])
Tao Baoafd92a82019-10-10 22:44:22 -070059 if exec_path.endswith('.py'):
60 script_name = os.path.basename(exec_path)
61 # logger hasn't been initialized yet at this point. Use print to output
62 # warnings.
63 print(
64 'Warning: releasetools script should be invoked as hermetic Python '
Kelvin Zhang0876c412020-06-23 15:06:58 -040065 'executable -- build and run `{}` directly.'.format(
66 script_name[:-3]),
Tao Baoafd92a82019-10-10 22:44:22 -070067 file=sys.stderr)
Kelvin Zhang0876c412020-06-23 15:06:58 -040068 self.search_path = os.path.dirname(os.path.dirname(exec_path))
Pavel Salomatov32676552019-03-06 20:00:45 +030069
Dan Albert8b72aef2015-03-23 19:13:21 -070070 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -080071 if not os.path.exists(os.path.join(self.search_path, self.signapk_path)):
72 if "ANDROID_HOST_OUT" in os.environ:
73 self.search_path = os.environ["ANDROID_HOST_OUT"]
Alex Klyubin9667b182015-12-10 13:38:50 -080074 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070075 self.extra_signapk_args = []
Martin Stjernholm58472e82022-01-07 22:08:47 +000076 self.aapt2_path = "aapt2"
Dan Albert8b72aef2015-03-23 19:13:21 -070077 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080078 self.java_args = ["-Xmx2048m"] # The default JVM args.
Tianjie Xu88a759d2020-01-23 10:47:54 -080079 self.android_jar_path = None
Dan Albert8b72aef2015-03-23 19:13:21 -070080 self.public_key_suffix = ".x509.pem"
81 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070082 # use otatools built boot_signer by default
83 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070084 self.boot_signer_args = []
85 self.verity_signer_path = None
86 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070087 self.verbose = False
88 self.tempfiles = []
89 self.device_specific = None
90 self.extras = {}
91 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070092 self.source_info_dict = None
93 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070094 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070095 # Stash size cannot exceed cache_size * threshold.
96 self.cache_size = None
97 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070098 self.logfile = None
Yifan Hong8e332ff2020-07-29 17:51:55 -070099 self.host_tools = {}
Dan Albert8b72aef2015-03-23 19:13:21 -0700100
101
102OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -0700103
Tao Bao71197512018-10-11 14:08:45 -0700104# The block size that's used across the releasetools scripts.
105BLOCK_SIZE = 4096
106
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800107# Values for "certificate" in apkcerts that mean special things.
108SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
109
Tao Bao5cc0abb2019-03-21 10:18:05 -0700110# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
111# that system_other is not in the list because we don't want to include its
Tianjiebf0b8a82021-03-03 17:31:04 -0800112# descriptor into vbmeta.img. When adding a new entry here, the
113# AVB_FOOTER_ARGS_BY_PARTITION in sign_target_files_apks need to be updated
114# accordingly.
Devin Mooreafdd7c72021-12-13 22:04:08 +0000115AVB_PARTITIONS = ('boot', 'init_boot', 'dtbo', 'odm', 'product', 'pvmfw', 'recovery',
Andrew Sculle077cf72021-02-18 10:27:29 +0000116 'system', 'system_ext', 'vendor', 'vendor_boot',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000117 'vendor_dlkm', 'odm_dlkm', 'system_dlkm')
Tao Bao9dd909e2017-11-14 11:27:32 -0800118
Tao Bao08c190f2019-06-03 23:07:58 -0700119# Chained VBMeta partitions.
120AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
121
Tianjie Xu861f4132018-09-12 11:49:33 -0700122# Partitions that should have their care_map added to META/care_map.pb
Kelvin Zhang39aea442020-08-17 11:04:25 -0400123PARTITIONS_WITH_CARE_MAP = [
Yifan Hongcfb917a2020-05-07 14:58:20 -0700124 'system',
125 'vendor',
126 'product',
127 'system_ext',
128 'odm',
129 'vendor_dlkm',
Yifan Hongf496f1b2020-07-15 16:52:59 -0700130 'odm_dlkm',
Ramji Jiyani13a41372022-01-27 07:05:08 +0000131 'system_dlkm',
Kelvin Zhang39aea442020-08-17 11:04:25 -0400132]
Tianjie Xu861f4132018-09-12 11:49:33 -0700133
Yifan Hong5057b952021-01-07 14:09:57 -0800134# Partitions with a build.prop file
Devin Mooreafdd7c72021-12-13 22:04:08 +0000135PARTITIONS_WITH_BUILD_PROP = PARTITIONS_WITH_CARE_MAP + ['boot', 'init_boot']
Yifan Hong5057b952021-01-07 14:09:57 -0800136
Yifan Hongc65a0542021-01-07 14:21:01 -0800137# See sysprop.mk. If file is moved, add new search paths here; don't remove
138# existing search paths.
139RAMDISK_BUILD_PROP_REL_PATHS = ['system/etc/ramdisk/build.prop']
Tianjie Xu861f4132018-09-12 11:49:33 -0700140
Kelvin Zhang563750f2021-04-28 12:46:17 -0400141
Tianjie Xu209db462016-05-24 17:34:52 -0700142class ErrorCode(object):
143 """Define error_codes for failures that happen during the actual
144 update package installation.
145
146 Error codes 0-999 are reserved for failures before the package
147 installation (i.e. low battery, package verification failure).
148 Detailed code in 'bootable/recovery/error_code.h' """
149
150 SYSTEM_VERIFICATION_FAILURE = 1000
151 SYSTEM_UPDATE_FAILURE = 1001
152 SYSTEM_UNEXPECTED_CONTENTS = 1002
153 SYSTEM_NONZERO_CONTENTS = 1003
154 SYSTEM_RECOVER_FAILURE = 1004
155 VENDOR_VERIFICATION_FAILURE = 2000
156 VENDOR_UPDATE_FAILURE = 2001
157 VENDOR_UNEXPECTED_CONTENTS = 2002
158 VENDOR_NONZERO_CONTENTS = 2003
159 VENDOR_RECOVER_FAILURE = 2004
160 OEM_PROP_MISMATCH = 3000
161 FINGERPRINT_MISMATCH = 3001
162 THUMBPRINT_MISMATCH = 3002
163 OLDER_BUILD = 3003
164 DEVICE_MISMATCH = 3004
165 BAD_PATCH_FILE = 3005
166 INSUFFICIENT_CACHE_SPACE = 3006
167 TUNE_PARTITION_FAILURE = 3007
168 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800169
Tao Bao80921982018-03-21 21:02:19 -0700170
Dan Albert8b72aef2015-03-23 19:13:21 -0700171class ExternalError(RuntimeError):
172 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700173
174
Tao Bao32fcdab2018-10-12 10:30:39 -0700175def InitLogging():
176 DEFAULT_LOGGING_CONFIG = {
177 'version': 1,
178 'disable_existing_loggers': False,
179 'formatters': {
180 'standard': {
181 'format':
182 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
183 'datefmt': '%Y-%m-%d %H:%M:%S',
184 },
185 },
186 'handlers': {
187 'default': {
188 'class': 'logging.StreamHandler',
189 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700190 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 },
192 },
193 'loggers': {
194 '': {
195 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700196 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700197 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700198 }
199 }
200 }
201 env_config = os.getenv('LOGGING_CONFIG')
202 if env_config:
203 with open(env_config) as f:
204 config = json.load(f)
205 else:
206 config = DEFAULT_LOGGING_CONFIG
207
208 # Increase the logging level for verbose mode.
209 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700210 config = copy.deepcopy(config)
211 config['handlers']['default']['level'] = 'INFO'
212
213 if OPTIONS.logfile:
214 config = copy.deepcopy(config)
215 config['handlers']['logfile'] = {
Kelvin Zhang0876c412020-06-23 15:06:58 -0400216 'class': 'logging.FileHandler',
217 'formatter': 'standard',
218 'level': 'INFO',
219 'mode': 'w',
220 'filename': OPTIONS.logfile,
Yifan Hong30910932019-10-25 20:36:55 -0700221 }
222 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700223
224 logging.config.dictConfig(config)
225
226
Yifan Hong8e332ff2020-07-29 17:51:55 -0700227def SetHostToolLocation(tool_name, location):
228 OPTIONS.host_tools[tool_name] = location
229
Kelvin Zhang563750f2021-04-28 12:46:17 -0400230
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900231def FindHostToolPath(tool_name):
232 """Finds the path to the host tool.
233
234 Args:
235 tool_name: name of the tool to find
236 Returns:
237 path to the tool if found under either one of the host_tools map or under
238 the same directory as this binary is located at. If not found, tool_name
239 is returned.
240 """
241 if tool_name in OPTIONS.host_tools:
242 return OPTIONS.host_tools[tool_name]
243
244 my_dir = os.path.dirname(os.path.realpath(sys.argv[0]))
245 tool_path = os.path.join(my_dir, tool_name)
246 if os.path.exists(tool_path):
247 return tool_path
248
249 return tool_name
Yifan Hong8e332ff2020-07-29 17:51:55 -0700250
Kelvin Zhang563750f2021-04-28 12:46:17 -0400251
Tao Bao39451582017-05-04 11:10:47 -0700252def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700253 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700254
Tao Bao73dd4f42018-10-04 16:25:33 -0700255 Args:
256 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 verbose: Whether the commands should be shown. Default to the global
258 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700259 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
260 stdin, etc. stdout and stderr will default to subprocess.PIPE and
261 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800262 universal_newlines will default to True, as most of the users in
263 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700264
265 Returns:
266 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700267 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700268 if 'stdout' not in kwargs and 'stderr' not in kwargs:
269 kwargs['stdout'] = subprocess.PIPE
270 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800271 if 'universal_newlines' not in kwargs:
272 kwargs['universal_newlines'] = True
Yifan Hong8e332ff2020-07-29 17:51:55 -0700273
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900274 if args:
275 # Make a copy of args in case client relies on the content of args later.
Yifan Hong8e332ff2020-07-29 17:51:55 -0700276 args = args[:]
Jiyong Parkc8c94ac2020-11-20 03:03:57 +0900277 args[0] = FindHostToolPath(args[0])
Yifan Hong8e332ff2020-07-29 17:51:55 -0700278
Kelvin Zhang766eea72021-06-03 09:36:08 -0400279 if verbose is None:
280 verbose = OPTIONS.verbose
281
Tao Bao32fcdab2018-10-12 10:30:39 -0700282 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400283 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700284 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700285 return subprocess.Popen(args, **kwargs)
286
287
Tao Bao986ee862018-10-04 15:46:16 -0700288def RunAndCheckOutput(args, verbose=None, **kwargs):
289 """Runs the given command and returns the output.
290
291 Args:
292 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700293 verbose: Whether the commands should be shown. Default to the global
294 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700295 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
296 stdin, etc. stdout and stderr will default to subprocess.PIPE and
297 subprocess.STDOUT respectively unless caller specifies any of them.
298
299 Returns:
300 The output string.
301
302 Raises:
303 ExternalError: On non-zero exit from the command.
304 """
Tao Bao986ee862018-10-04 15:46:16 -0700305 proc = Run(args, verbose=verbose, **kwargs)
306 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800307 if output is None:
308 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700309 # Don't log any if caller explicitly says so.
Kelvin Zhang0876c412020-06-23 15:06:58 -0400310 if verbose:
Tao Bao32fcdab2018-10-12 10:30:39 -0700311 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700312 if proc.returncode != 0:
313 raise ExternalError(
314 "Failed to run command '{}' (exit code {}):\n{}".format(
315 args, proc.returncode, output))
316 return output
317
318
Tao Baoc765cca2018-01-31 17:32:40 -0800319def RoundUpTo4K(value):
320 rounded_up = value + 4095
321 return rounded_up - (rounded_up % 4096)
322
323
Ying Wang7e6d4e42010-12-13 16:25:36 -0800324def CloseInheritedPipes():
325 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
326 before doing other work."""
327 if platform.system() != "Darwin":
328 return
329 for d in range(3, 1025):
330 try:
331 stat = os.fstat(d)
332 if stat is not None:
333 pipebit = stat[0] & 0x1000
334 if pipebit != 0:
335 os.close(d)
336 except OSError:
337 pass
338
339
Tao Bao1c320f82019-10-04 23:25:12 -0700340class BuildInfo(object):
341 """A class that holds the information for a given build.
342
343 This class wraps up the property querying for a given source or target build.
344 It abstracts away the logic of handling OEM-specific properties, and caches
345 the commonly used properties such as fingerprint.
346
347 There are two types of info dicts: a) build-time info dict, which is generated
348 at build time (i.e. included in a target_files zip); b) OEM info dict that is
349 specified at package generation time (via command line argument
350 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
351 having "oem_fingerprint_properties" in build-time info dict), all the queries
352 would be answered based on build-time info dict only. Otherwise if using
353 OEM-specific properties, some of them will be calculated from two info dicts.
354
355 Users can query properties similarly as using a dict() (e.g. info['fstab']),
Daniel Normand5fe8622020-01-08 17:01:11 -0800356 or to query build properties via GetBuildProp() or GetPartitionBuildProp().
Tao Bao1c320f82019-10-04 23:25:12 -0700357
358 Attributes:
359 info_dict: The build-time info dict.
360 is_ab: Whether it's a build that uses A/B OTA.
361 oem_dicts: A list of OEM dicts.
362 oem_props: A list of OEM properties that should be read from OEM dicts; None
363 if the build doesn't use any OEM-specific property.
364 fingerprint: The fingerprint of the build, which would be calculated based
365 on OEM properties if applicable.
366 device: The device name, which could come from OEM dicts if applicable.
367 """
368
369 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
370 "ro.product.manufacturer", "ro.product.model",
371 "ro.product.name"]
Steven Laver8e2086e2020-04-27 16:26:31 -0700372 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT = [
373 "product", "odm", "vendor", "system_ext", "system"]
374 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10 = [
375 "product", "product_services", "odm", "vendor", "system"]
376 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY = []
Tao Bao1c320f82019-10-04 23:25:12 -0700377
Tianjiefdda51d2021-05-05 14:46:35 -0700378 # The length of vbmeta digest to append to the fingerprint
379 _VBMETA_DIGEST_SIZE_USED = 8
380
381 def __init__(self, info_dict, oem_dicts=None, use_legacy_id=False):
Tao Bao1c320f82019-10-04 23:25:12 -0700382 """Initializes a BuildInfo instance with the given dicts.
383
384 Note that it only wraps up the given dicts, without making copies.
385
386 Arguments:
387 info_dict: The build-time info dict.
388 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
389 that it always uses the first dict to calculate the fingerprint or the
390 device name. The rest would be used for asserting OEM properties only
391 (e.g. one package can be installed on one of these devices).
Tianjiefdda51d2021-05-05 14:46:35 -0700392 use_legacy_id: Use the legacy build id to construct the fingerprint. This
393 is used when we need a BuildInfo class, while the vbmeta digest is
394 unavailable.
Tao Bao1c320f82019-10-04 23:25:12 -0700395
396 Raises:
397 ValueError: On invalid inputs.
398 """
399 self.info_dict = info_dict
400 self.oem_dicts = oem_dicts
401
402 self._is_ab = info_dict.get("ab_update") == "true"
Tianjiefdda51d2021-05-05 14:46:35 -0700403 self.use_legacy_id = use_legacy_id
Tao Bao1c320f82019-10-04 23:25:12 -0700404
Hongguang Chend7c160f2020-05-03 21:24:26 -0700405 # Skip _oem_props if oem_dicts is None to use BuildInfo in
406 # sign_target_files_apks
407 if self.oem_dicts:
408 self._oem_props = info_dict.get("oem_fingerprint_properties")
409 else:
410 self._oem_props = None
Tao Bao1c320f82019-10-04 23:25:12 -0700411
Daniel Normand5fe8622020-01-08 17:01:11 -0800412 def check_fingerprint(fingerprint):
413 if (" " in fingerprint or any(ord(ch) > 127 for ch in fingerprint)):
414 raise ValueError(
415 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
416 "3.2.2. Build Parameters.".format(fingerprint))
417
Daniel Normand5fe8622020-01-08 17:01:11 -0800418 self._partition_fingerprints = {}
Yifan Hong5057b952021-01-07 14:09:57 -0800419 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800420 try:
421 fingerprint = self.CalculatePartitionFingerprint(partition)
422 check_fingerprint(fingerprint)
423 self._partition_fingerprints[partition] = fingerprint
424 except ExternalError:
425 continue
426 if "system" in self._partition_fingerprints:
Yifan Hong5057b952021-01-07 14:09:57 -0800427 # system_other is not included in PARTITIONS_WITH_BUILD_PROP, but does
Daniel Normand5fe8622020-01-08 17:01:11 -0800428 # need a fingerprint when creating the image.
429 self._partition_fingerprints[
430 "system_other"] = self._partition_fingerprints["system"]
431
Tao Bao1c320f82019-10-04 23:25:12 -0700432 # These two should be computed only after setting self._oem_props.
433 self._device = self.GetOemProperty("ro.product.device")
434 self._fingerprint = self.CalculateFingerprint()
Daniel Normand5fe8622020-01-08 17:01:11 -0800435 check_fingerprint(self._fingerprint)
Tao Bao1c320f82019-10-04 23:25:12 -0700436
437 @property
438 def is_ab(self):
439 return self._is_ab
440
441 @property
442 def device(self):
443 return self._device
444
445 @property
446 def fingerprint(self):
447 return self._fingerprint
448
449 @property
Kelvin Zhang563750f2021-04-28 12:46:17 -0400450 def is_vabc(self):
451 vendor_prop = self.info_dict.get("vendor.build.prop")
452 vabc_enabled = vendor_prop and \
453 vendor_prop.GetProp("ro.virtual_ab.compression.enabled") == "true"
454 return vabc_enabled
455
456 @property
Kelvin Zhangad427382021-08-12 16:19:09 -0700457 def is_vabc_xor(self):
458 vendor_prop = self.info_dict.get("vendor.build.prop")
459 vabc_xor_enabled = vendor_prop and \
460 vendor_prop.GetProp("ro.virtual_ab.compression.xor.enabled") == "true"
461 return vabc_xor_enabled
462
463 @property
Kelvin Zhang10eac082021-06-10 14:32:19 -0400464 def vendor_suppressed_vabc(self):
465 vendor_prop = self.info_dict.get("vendor.build.prop")
466 vabc_suppressed = vendor_prop and \
467 vendor_prop.GetProp("ro.vendor.build.dont_use_vabc")
468 return vabc_suppressed and vabc_suppressed.lower() == "true"
469
470 @property
Tao Bao1c320f82019-10-04 23:25:12 -0700471 def oem_props(self):
472 return self._oem_props
473
474 def __getitem__(self, key):
475 return self.info_dict[key]
476
477 def __setitem__(self, key, value):
478 self.info_dict[key] = value
479
480 def get(self, key, default=None):
481 return self.info_dict.get(key, default)
482
483 def items(self):
484 return self.info_dict.items()
485
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000486 def _GetRawBuildProp(self, prop, partition):
487 prop_file = '{}.build.prop'.format(
488 partition) if partition else 'build.prop'
489 partition_props = self.info_dict.get(prop_file)
490 if not partition_props:
491 return None
492 return partition_props.GetProp(prop)
493
Daniel Normand5fe8622020-01-08 17:01:11 -0800494 def GetPartitionBuildProp(self, prop, partition):
495 """Returns the inquired build property for the provided partition."""
Yifan Hong10482a22021-01-07 14:38:41 -0800496
Devin Mooreb5195ff2022-02-11 18:44:26 +0000497 # Boot image and init_boot image uses ro.[product.]bootimage instead of boot.
498 # This comes from the generic ramdisk
499 prop_partition = "bootimage" if partition == "boot" or partition == "init_boot" else partition
Yifan Hong10482a22021-01-07 14:38:41 -0800500
Daniel Normand5fe8622020-01-08 17:01:11 -0800501 # If provided a partition for this property, only look within that
502 # partition's build.prop.
503 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
Yifan Hong10482a22021-01-07 14:38:41 -0800504 prop = prop.replace("ro.product", "ro.product.{}".format(prop_partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800505 else:
Yifan Hong10482a22021-01-07 14:38:41 -0800506 prop = prop.replace("ro.", "ro.{}.".format(prop_partition))
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000507
508 prop_val = self._GetRawBuildProp(prop, partition)
509 if prop_val is not None:
510 return prop_val
511 raise ExternalError("couldn't find %s in %s.build.prop" %
512 (prop, partition))
Daniel Normand5fe8622020-01-08 17:01:11 -0800513
Tao Bao1c320f82019-10-04 23:25:12 -0700514 def GetBuildProp(self, prop):
Daniel Normand5fe8622020-01-08 17:01:11 -0800515 """Returns the inquired build property from the standard build.prop file."""
Tao Bao1c320f82019-10-04 23:25:12 -0700516 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
517 return self._ResolveRoProductBuildProp(prop)
518
Tianjiefdda51d2021-05-05 14:46:35 -0700519 if prop == "ro.build.id":
520 return self._GetBuildId()
521
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000522 prop_val = self._GetRawBuildProp(prop, None)
523 if prop_val is not None:
524 return prop_val
525
526 raise ExternalError("couldn't find %s in build.prop" % (prop,))
Tao Bao1c320f82019-10-04 23:25:12 -0700527
528 def _ResolveRoProductBuildProp(self, prop):
529 """Resolves the inquired ro.product.* build property"""
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000530 prop_val = self._GetRawBuildProp(prop, None)
Tao Bao1c320f82019-10-04 23:25:12 -0700531 if prop_val:
532 return prop_val
533
Steven Laver8e2086e2020-04-27 16:26:31 -0700534 default_source_order = self._GetRoProductPropsDefaultSourceOrder()
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000535 source_order_val = self._GetRawBuildProp(
536 "ro.product.property_source_order", None)
Tao Bao1c320f82019-10-04 23:25:12 -0700537 if source_order_val:
538 source_order = source_order_val.split(",")
539 else:
Steven Laver8e2086e2020-04-27 16:26:31 -0700540 source_order = default_source_order
Tao Bao1c320f82019-10-04 23:25:12 -0700541
542 # Check that all sources in ro.product.property_source_order are valid
Steven Laver8e2086e2020-04-27 16:26:31 -0700543 if any([x not in default_source_order for x in source_order]):
Tao Bao1c320f82019-10-04 23:25:12 -0700544 raise ExternalError(
545 "Invalid ro.product.property_source_order '{}'".format(source_order))
546
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000547 for source_partition in source_order:
Tao Bao1c320f82019-10-04 23:25:12 -0700548 source_prop = prop.replace(
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000549 "ro.product", "ro.product.{}".format(source_partition), 1)
550 prop_val = self._GetRawBuildProp(source_prop, source_partition)
Tao Bao1c320f82019-10-04 23:25:12 -0700551 if prop_val:
552 return prop_val
553
554 raise ExternalError("couldn't resolve {}".format(prop))
555
Steven Laver8e2086e2020-04-27 16:26:31 -0700556 def _GetRoProductPropsDefaultSourceOrder(self):
557 # NOTE: refer to CDDs and android.os.Build.VERSION for the definition and
558 # values of these properties for each Android release.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000559 android_codename = self._GetRawBuildProp("ro.build.version.codename", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700560 if android_codename == "REL":
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000561 android_version = self._GetRawBuildProp("ro.build.version.release", None)
Steven Laver8e2086e2020-04-27 16:26:31 -0700562 if android_version == "10":
563 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_ANDROID_10
564 # NOTE: float() conversion of android_version will have rounding error.
565 # We are checking for "9" or less, and using "< 10" is well outside of
566 # possible floating point rounding.
567 try:
568 android_version_val = float(android_version)
569 except ValueError:
570 android_version_val = 0
571 if android_version_val < 10:
572 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_LEGACY
573 return BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER_CURRENT
574
Tianjieb37c5be2020-10-15 21:27:10 -0700575 def _GetPlatformVersion(self):
576 version_sdk = self.GetBuildProp("ro.build.version.sdk")
577 # init code switches to version_release_or_codename (see b/158483506). After
578 # API finalization, release_or_codename will be the same as release. This
579 # is the best effort to support pre-S dev stage builds.
580 if int(version_sdk) >= 30:
581 try:
582 return self.GetBuildProp("ro.build.version.release_or_codename")
583 except ExternalError:
584 logger.warning('Failed to find ro.build.version.release_or_codename')
585
586 return self.GetBuildProp("ro.build.version.release")
587
Tianjiefdda51d2021-05-05 14:46:35 -0700588 def _GetBuildId(self):
589 build_id = self._GetRawBuildProp("ro.build.id", None)
590 if build_id:
591 return build_id
592
593 legacy_build_id = self.GetBuildProp("ro.build.legacy.id")
594 if not legacy_build_id:
595 raise ExternalError("Couldn't find build id in property file")
596
597 if self.use_legacy_id:
598 return legacy_build_id
599
600 # Append the top 8 chars of vbmeta digest to the existing build id. The
601 # logic needs to match the one in init, so that OTA can deliver correctly.
602 avb_enable = self.info_dict.get("avb_enable") == "true"
603 if not avb_enable:
604 raise ExternalError("AVB isn't enabled when using legacy build id")
605
606 vbmeta_digest = self.info_dict.get("vbmeta_digest")
607 if not vbmeta_digest:
608 raise ExternalError("Vbmeta digest isn't provided when using legacy build"
609 " id")
610 if len(vbmeta_digest) < self._VBMETA_DIGEST_SIZE_USED:
611 raise ExternalError("Invalid vbmeta digest " + vbmeta_digest)
612
613 digest_prefix = vbmeta_digest[:self._VBMETA_DIGEST_SIZE_USED]
614 return legacy_build_id + '.' + digest_prefix
615
Tianjieb37c5be2020-10-15 21:27:10 -0700616 def _GetPartitionPlatformVersion(self, partition):
617 try:
618 return self.GetPartitionBuildProp("ro.build.version.release_or_codename",
619 partition)
620 except ExternalError:
621 return self.GetPartitionBuildProp("ro.build.version.release",
622 partition)
623
Tao Bao1c320f82019-10-04 23:25:12 -0700624 def GetOemProperty(self, key):
625 if self.oem_props is not None and key in self.oem_props:
626 return self.oem_dicts[0][key]
627 return self.GetBuildProp(key)
628
Daniel Normand5fe8622020-01-08 17:01:11 -0800629 def GetPartitionFingerprint(self, partition):
630 return self._partition_fingerprints.get(partition, None)
631
632 def CalculatePartitionFingerprint(self, partition):
633 try:
634 return self.GetPartitionBuildProp("ro.build.fingerprint", partition)
635 except ExternalError:
636 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
637 self.GetPartitionBuildProp("ro.product.brand", partition),
638 self.GetPartitionBuildProp("ro.product.name", partition),
639 self.GetPartitionBuildProp("ro.product.device", partition),
Tianjieb37c5be2020-10-15 21:27:10 -0700640 self._GetPartitionPlatformVersion(partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800641 self.GetPartitionBuildProp("ro.build.id", partition),
Kelvin Zhang0876c412020-06-23 15:06:58 -0400642 self.GetPartitionBuildProp(
643 "ro.build.version.incremental", partition),
Daniel Normand5fe8622020-01-08 17:01:11 -0800644 self.GetPartitionBuildProp("ro.build.type", partition),
645 self.GetPartitionBuildProp("ro.build.tags", partition))
646
Tao Bao1c320f82019-10-04 23:25:12 -0700647 def CalculateFingerprint(self):
648 if self.oem_props is None:
649 try:
650 return self.GetBuildProp("ro.build.fingerprint")
651 except ExternalError:
652 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
653 self.GetBuildProp("ro.product.brand"),
654 self.GetBuildProp("ro.product.name"),
655 self.GetBuildProp("ro.product.device"),
Tianjieb37c5be2020-10-15 21:27:10 -0700656 self._GetPlatformVersion(),
Tao Bao1c320f82019-10-04 23:25:12 -0700657 self.GetBuildProp("ro.build.id"),
658 self.GetBuildProp("ro.build.version.incremental"),
659 self.GetBuildProp("ro.build.type"),
660 self.GetBuildProp("ro.build.tags"))
661 return "%s/%s/%s:%s" % (
662 self.GetOemProperty("ro.product.brand"),
663 self.GetOemProperty("ro.product.name"),
664 self.GetOemProperty("ro.product.device"),
665 self.GetBuildProp("ro.build.thumbprint"))
666
667 def WriteMountOemScript(self, script):
668 assert self.oem_props is not None
669 recovery_mount_options = self.info_dict.get("recovery_mount_options")
670 script.Mount("/oem", recovery_mount_options)
671
672 def WriteDeviceAssertions(self, script, oem_no_mount):
673 # Read the property directly if not using OEM properties.
674 if not self.oem_props:
675 script.AssertDevice(self.device)
676 return
677
678 # Otherwise assert OEM properties.
679 if not self.oem_dicts:
680 raise ExternalError(
681 "No OEM file provided to answer expected assertions")
682
683 for prop in self.oem_props.split():
684 values = []
685 for oem_dict in self.oem_dicts:
686 if prop in oem_dict:
687 values.append(oem_dict[prop])
688 if not values:
689 raise ExternalError(
690 "The OEM file is missing the property %s" % (prop,))
691 script.AssertOemProperty(prop, values, oem_no_mount)
692
693
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000694def ReadFromInputFile(input_file, fn):
695 """Reads the contents of fn from input zipfile or directory."""
696 if isinstance(input_file, zipfile.ZipFile):
697 return input_file.read(fn).decode()
698 else:
699 path = os.path.join(input_file, *fn.split("/"))
700 try:
701 with open(path) as f:
702 return f.read()
703 except IOError as e:
704 if e.errno == errno.ENOENT:
705 raise KeyError(fn)
706
707
Yifan Hong10482a22021-01-07 14:38:41 -0800708def ExtractFromInputFile(input_file, fn):
709 """Extracts the contents of fn from input zipfile or directory into a file."""
710 if isinstance(input_file, zipfile.ZipFile):
711 tmp_file = MakeTempFile(os.path.basename(fn))
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500712 with open(tmp_file, 'wb') as f:
Yifan Hong10482a22021-01-07 14:38:41 -0800713 f.write(input_file.read(fn))
714 return tmp_file
715 else:
716 file = os.path.join(input_file, *fn.split("/"))
717 if not os.path.exists(file):
718 raise KeyError(fn)
719 return file
720
Kelvin Zhang563750f2021-04-28 12:46:17 -0400721
jiajia tangf3f842b2021-03-17 21:49:44 +0800722class RamdiskFormat(object):
723 LZ4 = 1
724 GZ = 2
Yifan Hong10482a22021-01-07 14:38:41 -0800725
Kelvin Zhang563750f2021-04-28 12:46:17 -0400726
jiajia tang836f76b2021-04-02 14:48:26 +0800727def _GetRamdiskFormat(info_dict):
728 if info_dict.get('lz4_ramdisks') == 'true':
729 ramdisk_format = RamdiskFormat.LZ4
730 else:
731 ramdisk_format = RamdiskFormat.GZ
732 return ramdisk_format
733
Kelvin Zhang563750f2021-04-28 12:46:17 -0400734
Tao Bao410ad8b2018-08-24 12:08:38 -0700735def LoadInfoDict(input_file, repacking=False):
736 """Loads the key/value pairs from the given input target_files.
737
Tianjiea85bdf02020-07-29 11:56:19 -0700738 It reads `META/misc_info.txt` file in the target_files input, does validation
Tao Bao410ad8b2018-08-24 12:08:38 -0700739 checks and returns the parsed key/value pairs for to the given build. It's
740 usually called early when working on input target_files files, e.g. when
741 generating OTAs, or signing builds. Note that the function may be called
742 against an old target_files file (i.e. from past dessert releases). So the
743 property parsing needs to be backward compatible.
744
745 In a `META/misc_info.txt`, a few properties are stored as links to the files
746 in the PRODUCT_OUT directory. It works fine with the build system. However,
747 they are no longer available when (re)generating images from target_files zip.
748 When `repacking` is True, redirect these properties to the actual files in the
749 unzipped directory.
750
751 Args:
752 input_file: The input target_files file, which could be an open
753 zipfile.ZipFile instance, or a str for the dir that contains the files
754 unzipped from a target_files file.
755 repacking: Whether it's trying repack an target_files file after loading the
756 info dict (default: False). If so, it will rewrite a few loaded
757 properties (e.g. selinux_fc, root_dir) to point to the actual files in
758 target_files file. When doing repacking, `input_file` must be a dir.
759
760 Returns:
761 A dict that contains the parsed key/value pairs.
762
763 Raises:
764 AssertionError: On invalid input arguments.
765 ValueError: On malformed input values.
766 """
767 if repacking:
768 assert isinstance(input_file, str), \
769 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700770
Doug Zongkerc9253822014-02-04 12:17:58 -0800771 def read_helper(fn):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000772 return ReadFromInputFile(input_file, fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800773
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700774 try:
Michael Runge6e836112014-04-15 17:40:21 -0700775 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700776 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700777 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700778
Tao Bao410ad8b2018-08-24 12:08:38 -0700779 if "recovery_api_version" not in d:
780 raise ValueError("Failed to find 'recovery_api_version'")
781 if "fstab_version" not in d:
782 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800783
Tao Bao410ad8b2018-08-24 12:08:38 -0700784 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700785 # "selinux_fc" properties should point to the file_contexts files
786 # (file_contexts.bin) under META/.
787 for key in d:
788 if key.endswith("selinux_fc"):
789 fc_basename = os.path.basename(d[key])
790 fc_config = os.path.join(input_file, "META", fc_basename)
791 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700792
Daniel Norman72c626f2019-05-13 15:58:14 -0700793 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700794
Tom Cherryd14b8952018-08-09 14:26:00 -0700795 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700796 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700797 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700798 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700799
David Anderson0ec64ac2019-12-06 12:21:18 -0800800 # Redirect {partition}_base_fs_file for each of the named partitions.
Yifan Hongcfb917a2020-05-07 14:58:20 -0700801 for part_name in ["system", "vendor", "system_ext", "product", "odm",
Ramji Jiyani13a41372022-01-27 07:05:08 +0000802 "vendor_dlkm", "odm_dlkm", "system_dlkm"]:
David Anderson0ec64ac2019-12-06 12:21:18 -0800803 key_name = part_name + "_base_fs_file"
804 if key_name not in d:
805 continue
806 basename = os.path.basename(d[key_name])
807 base_fs_file = os.path.join(input_file, "META", basename)
808 if os.path.exists(base_fs_file):
809 d[key_name] = base_fs_file
Tao Baob079b502016-05-03 08:01:19 -0700810 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700811 logger.warning(
David Anderson0ec64ac2019-12-06 12:21:18 -0800812 "Failed to find %s base fs file: %s", part_name, base_fs_file)
813 del d[key_name]
Tao Baof54216f2016-03-29 15:12:37 -0700814
Doug Zongker37974732010-09-16 17:44:38 -0700815 def makeint(key):
816 if key in d:
817 d[key] = int(d[key], 0)
818
819 makeint("recovery_api_version")
820 makeint("blocksize")
821 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700822 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700823 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700824 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700825 makeint("recovery_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800826 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700827
Steve Muckle903a1ca2020-05-07 17:32:10 -0700828 boot_images = "boot.img"
829 if "boot_images" in d:
830 boot_images = d["boot_images"]
831 for b in boot_images.split():
Kelvin Zhang0876c412020-06-23 15:06:58 -0400832 makeint(b.replace(".img", "_size"))
Steve Muckle903a1ca2020-05-07 17:32:10 -0700833
Tao Bao765668f2019-10-04 22:03:00 -0700834 # Load recovery fstab if applicable.
835 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
jiajia tang836f76b2021-04-02 14:48:26 +0800836 ramdisk_format = _GetRamdiskFormat(d)
Tianjie Xucfa86222016-03-07 16:31:19 -0800837
Tianjie Xu861f4132018-09-12 11:49:33 -0700838 # Tries to load the build props for all partitions with care_map, including
839 # system and vendor.
Yifan Hong5057b952021-01-07 14:09:57 -0800840 for partition in PARTITIONS_WITH_BUILD_PROP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800841 partition_prop = "{}.build.prop".format(partition)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000842 d[partition_prop] = PartitionBuildProps.FromInputFile(
jiajia tangf3f842b2021-03-17 21:49:44 +0800843 input_file, partition, ramdisk_format=ramdisk_format)
Tianjie Xu861f4132018-09-12 11:49:33 -0700844 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800845
Tao Bao3ed35d32019-10-07 20:48:48 -0700846 # Set up the salt (based on fingerprint) that will be used when adding AVB
847 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800848 if d.get("avb_enable") == "true":
Tianjiefdda51d2021-05-05 14:46:35 -0700849 build_info = BuildInfo(d, use_legacy_id=True)
Yifan Hong5057b952021-01-07 14:09:57 -0800850 for partition in PARTITIONS_WITH_BUILD_PROP:
Daniel Normand5fe8622020-01-08 17:01:11 -0800851 fingerprint = build_info.GetPartitionFingerprint(partition)
852 if fingerprint:
Kelvin Zhang563750f2021-04-28 12:46:17 -0400853 d["avb_{}_salt".format(partition)] = sha256(
854 fingerprint.encode()).hexdigest()
Tianjiefdda51d2021-05-05 14:46:35 -0700855
856 # Set the vbmeta digest if exists
857 try:
858 d["vbmeta_digest"] = read_helper("META/vbmeta_digest.txt").rstrip()
859 except KeyError:
860 pass
861
Kelvin Zhang39aea442020-08-17 11:04:25 -0400862 try:
863 d["ab_partitions"] = read_helper("META/ab_partitions.txt").split("\n")
864 except KeyError:
865 logger.warning("Can't find META/ab_partitions.txt")
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700866 return d
867
Tao Baod1de6f32017-03-01 16:38:48 -0800868
Daniel Norman4cc9df62019-07-18 10:11:07 -0700869def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900870 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700871 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900872
Daniel Norman4cc9df62019-07-18 10:11:07 -0700873
874def LoadDictionaryFromFile(file_path):
875 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900876 return LoadDictionaryFromLines(lines)
877
878
Michael Runge6e836112014-04-15 17:40:21 -0700879def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700880 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700881 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700882 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700883 if not line or line.startswith("#"):
884 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700885 if "=" in line:
886 name, value = line.split("=", 1)
887 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700888 return d
889
Tao Baod1de6f32017-03-01 16:38:48 -0800890
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000891class PartitionBuildProps(object):
892 """The class holds the build prop of a particular partition.
893
894 This class loads the build.prop and holds the build properties for a given
895 partition. It also partially recognizes the 'import' statement in the
896 build.prop; and calculates alternative values of some specific build
897 properties during runtime.
898
899 Attributes:
900 input_file: a zipped target-file or an unzipped target-file directory.
901 partition: name of the partition.
902 props_allow_override: a list of build properties to search for the
903 alternative values during runtime.
Tianjie Xu9afb2212020-05-10 21:48:15 +0000904 build_props: a dict of build properties for the given partition.
905 prop_overrides: a set of props that are overridden by import.
906 placeholder_values: A dict of runtime variables' values to replace the
907 placeholders in the build.prop file. We expect exactly one value for
908 each of the variables.
jiajia tangf3f842b2021-03-17 21:49:44 +0800909 ramdisk_format: If name is "boot", the format of ramdisk inside the
910 boot image. Otherwise, its value is ignored.
911 Use lz4 to decompress by default. If its value is gzip, use minigzip.
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000912 """
Kelvin Zhang0876c412020-06-23 15:06:58 -0400913
Tianjie Xu9afb2212020-05-10 21:48:15 +0000914 def __init__(self, input_file, name, placeholder_values=None):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000915 self.input_file = input_file
916 self.partition = name
917 self.props_allow_override = [props.format(name) for props in [
Tianjie Xu9afb2212020-05-10 21:48:15 +0000918 'ro.product.{}.brand', 'ro.product.{}.name', 'ro.product.{}.device']]
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000919 self.build_props = {}
Tianjie Xu9afb2212020-05-10 21:48:15 +0000920 self.prop_overrides = set()
921 self.placeholder_values = {}
922 if placeholder_values:
923 self.placeholder_values = copy.deepcopy(placeholder_values)
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000924
925 @staticmethod
926 def FromDictionary(name, build_props):
927 """Constructs an instance from a build prop dictionary."""
928
929 props = PartitionBuildProps("unknown", name)
930 props.build_props = build_props.copy()
931 return props
932
933 @staticmethod
jiajia tangf3f842b2021-03-17 21:49:44 +0800934 def FromInputFile(input_file, name, placeholder_values=None, ramdisk_format=RamdiskFormat.LZ4):
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000935 """Loads the build.prop file and builds the attributes."""
Yifan Hong10482a22021-01-07 14:38:41 -0800936
Devin Mooreafdd7c72021-12-13 22:04:08 +0000937 if name in ("boot", "init_boot"):
Kelvin Zhang563750f2021-04-28 12:46:17 -0400938 data = PartitionBuildProps._ReadBootPropFile(
Devin Mooreafdd7c72021-12-13 22:04:08 +0000939 input_file, name, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800940 else:
941 data = PartitionBuildProps._ReadPartitionPropFile(input_file, name)
942
943 props = PartitionBuildProps(input_file, name, placeholder_values)
944 props._LoadBuildProp(data)
945 return props
946
947 @staticmethod
Devin Mooreafdd7c72021-12-13 22:04:08 +0000948 def _ReadBootPropFile(input_file, partition_name, ramdisk_format):
Yifan Hong10482a22021-01-07 14:38:41 -0800949 """
950 Read build.prop for boot image from input_file.
951 Return empty string if not found.
952 """
Devin Mooreafdd7c72021-12-13 22:04:08 +0000953 image_path = 'IMAGES/' + partition_name + '.img'
Yifan Hong10482a22021-01-07 14:38:41 -0800954 try:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000955 boot_img = ExtractFromInputFile(input_file, image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800956 except KeyError:
Devin Mooreafdd7c72021-12-13 22:04:08 +0000957 logger.warning('Failed to read %s', image_path)
Yifan Hong10482a22021-01-07 14:38:41 -0800958 return ''
jiajia tangf3f842b2021-03-17 21:49:44 +0800959 prop_file = GetBootImageBuildProp(boot_img, ramdisk_format=ramdisk_format)
Yifan Hong10482a22021-01-07 14:38:41 -0800960 if prop_file is None:
961 return ''
Kelvin Zhang645dcb82021-02-09 17:52:50 -0500962 with open(prop_file, "r") as f:
963 return f.read()
Yifan Hong10482a22021-01-07 14:38:41 -0800964
965 @staticmethod
966 def _ReadPartitionPropFile(input_file, name):
967 """
968 Read build.prop for name from input_file.
969 Return empty string if not found.
970 """
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000971 data = ''
972 for prop_file in ['{}/etc/build.prop'.format(name.upper()),
973 '{}/build.prop'.format(name.upper())]:
974 try:
975 data = ReadFromInputFile(input_file, prop_file)
976 break
977 except KeyError:
978 logger.warning('Failed to read %s', prop_file)
Kelvin Zhang4fc3aa02021-11-16 18:58:58 -0800979 if data == '':
980 logger.warning("Failed to read build.prop for partition {}".format(name))
Yifan Hong10482a22021-01-07 14:38:41 -0800981 return data
Tianjie Xu0fde41e2020-05-09 05:24:18 +0000982
Yifan Hong125d0b62020-09-24 17:07:03 -0700983 @staticmethod
984 def FromBuildPropFile(name, build_prop_file):
985 """Constructs an instance from a build prop file."""
986
987 props = PartitionBuildProps("unknown", name)
988 with open(build_prop_file) as f:
989 props._LoadBuildProp(f.read())
990 return props
991
Tianjie Xu9afb2212020-05-10 21:48:15 +0000992 def _LoadBuildProp(self, data):
993 for line in data.split('\n'):
994 line = line.strip()
995 if not line or line.startswith("#"):
996 continue
997 if line.startswith("import"):
998 overrides = self._ImportParser(line)
999 duplicates = self.prop_overrides.intersection(overrides.keys())
1000 if duplicates:
1001 raise ValueError('prop {} is overridden multiple times'.format(
1002 ','.join(duplicates)))
1003 self.prop_overrides = self.prop_overrides.union(overrides.keys())
1004 self.build_props.update(overrides)
1005 elif "=" in line:
1006 name, value = line.split("=", 1)
1007 if name in self.prop_overrides:
1008 raise ValueError('prop {} is set again after overridden by import '
1009 'statement'.format(name))
1010 self.build_props[name] = value
1011
1012 def _ImportParser(self, line):
1013 """Parses the build prop in a given import statement."""
1014
1015 tokens = line.split()
Kelvin Zhang0876c412020-06-23 15:06:58 -04001016 if tokens[0] != 'import' or (len(tokens) != 2 and len(tokens) != 3):
Tianjie Xu9afb2212020-05-10 21:48:15 +00001017 raise ValueError('Unrecognized import statement {}'.format(line))
Hongguang Chenb4702b72020-05-13 18:05:20 -07001018
1019 if len(tokens) == 3:
1020 logger.info("Import %s from %s, skip", tokens[2], tokens[1])
1021 return {}
1022
Tianjie Xu9afb2212020-05-10 21:48:15 +00001023 import_path = tokens[1]
1024 if not re.match(r'^/{}/.*\.prop$'.format(self.partition), import_path):
Kelvin Zhang42ab8282022-02-17 13:07:55 -08001025 logger.warn('Unrecognized import path {}'.format(line))
1026 return {}
Tianjie Xu9afb2212020-05-10 21:48:15 +00001027
1028 # We only recognize a subset of import statement that the init process
1029 # supports. And we can loose the restriction based on how the dynamic
1030 # fingerprint is used in practice. The placeholder format should be
1031 # ${placeholder}, and its value should be provided by the caller through
1032 # the placeholder_values.
1033 for prop, value in self.placeholder_values.items():
1034 prop_place_holder = '${{{}}}'.format(prop)
1035 if prop_place_holder in import_path:
1036 import_path = import_path.replace(prop_place_holder, value)
1037 if '$' in import_path:
1038 logger.info('Unresolved place holder in import path %s', import_path)
1039 return {}
1040
1041 import_path = import_path.replace('/{}'.format(self.partition),
1042 self.partition.upper())
1043 logger.info('Parsing build props override from %s', import_path)
1044
1045 lines = ReadFromInputFile(self.input_file, import_path).split('\n')
1046 d = LoadDictionaryFromLines(lines)
1047 return {key: val for key, val in d.items()
1048 if key in self.props_allow_override}
1049
Tianjie Xu0fde41e2020-05-09 05:24:18 +00001050 def GetProp(self, prop):
1051 return self.build_props.get(prop)
1052
1053
Tianjie Xucfa86222016-03-07 16:31:19 -08001054def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
1055 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001056 class Partition(object):
Yifan Hong65afc072020-04-17 10:08:10 -07001057 def __init__(self, mount_point, fs_type, device, length, context, slotselect):
Dan Albert8b72aef2015-03-23 19:13:21 -07001058 self.mount_point = mount_point
1059 self.fs_type = fs_type
1060 self.device = device
1061 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -07001062 self.context = context
Yifan Hong65afc072020-04-17 10:08:10 -07001063 self.slotselect = slotselect
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001064
1065 try:
Tianjie Xucfa86222016-03-07 16:31:19 -08001066 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001067 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -07001068 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -07001069 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001070
Tao Baod1de6f32017-03-01 16:38:48 -08001071 assert fstab_version == 2
1072
1073 d = {}
1074 for line in data.split("\n"):
1075 line = line.strip()
1076 if not line or line.startswith("#"):
1077 continue
1078
1079 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
1080 pieces = line.split()
1081 if len(pieces) != 5:
1082 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
1083
1084 # Ignore entries that are managed by vold.
1085 options = pieces[4]
1086 if "voldmanaged=" in options:
1087 continue
1088
1089 # It's a good line, parse it.
1090 length = 0
Yifan Hong65afc072020-04-17 10:08:10 -07001091 slotselect = False
Tao Baod1de6f32017-03-01 16:38:48 -08001092 options = options.split(",")
1093 for i in options:
1094 if i.startswith("length="):
1095 length = int(i[7:])
Yifan Hong65afc072020-04-17 10:08:10 -07001096 elif i == "slotselect":
1097 slotselect = True
Doug Zongker086cbb02011-02-17 15:54:20 -08001098 else:
Tao Baod1de6f32017-03-01 16:38:48 -08001099 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -07001100 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001101
Tao Baod1de6f32017-03-01 16:38:48 -08001102 mount_flags = pieces[3]
1103 # Honor the SELinux context if present.
1104 context = None
1105 for i in mount_flags.split(","):
1106 if i.startswith("context="):
1107 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -08001108
Tao Baod1de6f32017-03-01 16:38:48 -08001109 mount_point = pieces[1]
1110 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
Yifan Hong65afc072020-04-17 10:08:10 -07001111 device=pieces[0], length=length, context=context,
1112 slotselect=slotselect)
Ken Sumrall3b07cf12013-02-19 17:35:29 -08001113
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001114 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001115 # system. Other areas assume system is always at "/system" so point /system
1116 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001117 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -08001118 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -07001119 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001120 return d
1121
1122
Tao Bao765668f2019-10-04 22:03:00 -07001123def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
1124 """Finds the path to recovery fstab and loads its contents."""
1125 # recovery fstab is only meaningful when installing an update via recovery
1126 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
Yifan Hong65afc072020-04-17 10:08:10 -07001127 if info_dict.get('ab_update') == 'true' and \
1128 info_dict.get("allow_non_ab") != "true":
Tao Bao765668f2019-10-04 22:03:00 -07001129 return None
1130
1131 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
1132 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
1133 # cases, since it may load the info_dict from an old build (e.g. when
1134 # generating incremental OTAs from that build).
1135 system_root_image = info_dict.get('system_root_image') == 'true'
1136 if info_dict.get('no_recovery') != 'true':
1137 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
1138 if isinstance(input_file, zipfile.ZipFile):
1139 if recovery_fstab_path not in input_file.namelist():
1140 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1141 else:
1142 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1143 if not os.path.exists(path):
1144 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
1145 return LoadRecoveryFSTab(
1146 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1147 system_root_image)
1148
1149 if info_dict.get('recovery_as_boot') == 'true':
1150 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
1151 if isinstance(input_file, zipfile.ZipFile):
1152 if recovery_fstab_path not in input_file.namelist():
1153 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1154 else:
1155 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
1156 if not os.path.exists(path):
1157 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
1158 return LoadRecoveryFSTab(
1159 read_helper, info_dict['fstab_version'], recovery_fstab_path,
1160 system_root_image)
1161
1162 return None
1163
1164
Doug Zongker37974732010-09-16 17:44:38 -07001165def DumpInfoDict(d):
1166 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -07001167 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -07001168
Dan Albert8b72aef2015-03-23 19:13:21 -07001169
Daniel Norman55417142019-11-25 16:04:36 -08001170def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001171 """Merges dynamic partition info variables.
1172
1173 Args:
1174 framework_dict: The dictionary of dynamic partition info variables from the
1175 partial framework target files.
1176 vendor_dict: The dictionary of dynamic partition info variables from the
1177 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001178
1179 Returns:
1180 The merged dynamic partition info dictionary.
1181 """
Daniel Normanb0c75912020-09-24 14:30:21 -07001182
1183 def uniq_concat(a, b):
1184 combined = set(a.split(" "))
1185 combined.update(set(b.split(" ")))
1186 combined = [item.strip() for item in combined if item.strip()]
1187 return " ".join(sorted(combined))
1188
1189 if (framework_dict.get("use_dynamic_partitions") !=
Kelvin Zhang563750f2021-04-28 12:46:17 -04001190 "true") or (vendor_dict.get("use_dynamic_partitions") != "true"):
Daniel Normanb0c75912020-09-24 14:30:21 -07001191 raise ValueError("Both dictionaries must have use_dynamic_partitions=true")
1192
1193 merged_dict = {"use_dynamic_partitions": "true"}
1194
1195 merged_dict["dynamic_partition_list"] = uniq_concat(
1196 framework_dict.get("dynamic_partition_list", ""),
1197 vendor_dict.get("dynamic_partition_list", ""))
1198
1199 # Super block devices are defined by the vendor dict.
1200 if "super_block_devices" in vendor_dict:
1201 merged_dict["super_block_devices"] = vendor_dict["super_block_devices"]
1202 for block_device in merged_dict["super_block_devices"].split(" "):
1203 key = "super_%s_device_size" % block_device
1204 if key not in vendor_dict:
1205 raise ValueError("Vendor dict does not contain required key %s." % key)
1206 merged_dict[key] = vendor_dict[key]
1207
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001208 # Partition groups and group sizes are defined by the vendor dict because
1209 # these values may vary for each board that uses a shared system image.
1210 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001211 for partition_group in merged_dict["super_partition_groups"].split(" "):
1212 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -08001213 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001214 if key not in vendor_dict:
1215 raise ValueError("Vendor dict does not contain required key %s." % key)
1216 merged_dict[key] = vendor_dict[key]
1217
1218 # Set the partition group's partition list using a concatenation of the
1219 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -08001220 key = "super_%s_partition_list" % partition_group
Daniel Normanb0c75912020-09-24 14:30:21 -07001221 merged_dict[key] = uniq_concat(
1222 framework_dict.get(key, ""), vendor_dict.get(key, ""))
P Adarsh Reddy7e9b5c42019-12-20 15:07:24 +05301223
Daniel Normanb0c75912020-09-24 14:30:21 -07001224 # Various other flags should be copied from the vendor dict, if defined.
1225 for key in ("virtual_ab", "virtual_ab_retrofit", "lpmake",
1226 "super_metadata_device", "super_partition_error_limit",
1227 "super_partition_size"):
1228 if key in vendor_dict.keys():
1229 merged_dict[key] = vendor_dict[key]
1230
Daniel Normanbfc51ef2019-07-24 14:34:54 -07001231 return merged_dict
1232
1233
Daniel Norman21c34f72020-11-11 17:25:50 -08001234def PartitionMapFromTargetFiles(target_files_dir):
1235 """Builds a map from partition -> path within an extracted target files directory."""
1236 # Keep possible_subdirs in sync with build/make/core/board_config.mk.
1237 possible_subdirs = {
1238 "system": ["SYSTEM"],
1239 "vendor": ["VENDOR", "SYSTEM/vendor"],
1240 "product": ["PRODUCT", "SYSTEM/product"],
1241 "system_ext": ["SYSTEM_EXT", "SYSTEM/system_ext"],
1242 "odm": ["ODM", "VENDOR/odm", "SYSTEM/vendor/odm"],
1243 "vendor_dlkm": [
1244 "VENDOR_DLKM", "VENDOR/vendor_dlkm", "SYSTEM/vendor/vendor_dlkm"
1245 ],
1246 "odm_dlkm": ["ODM_DLKM", "VENDOR/odm_dlkm", "SYSTEM/vendor/odm_dlkm"],
Ramji Jiyani13a41372022-01-27 07:05:08 +00001247 "system_dlkm": ["SYSTEM_DLKM", "SYSTEM/system_dlkm"],
Daniel Norman21c34f72020-11-11 17:25:50 -08001248 }
1249 partition_map = {}
1250 for partition, subdirs in possible_subdirs.items():
1251 for subdir in subdirs:
1252 if os.path.exists(os.path.join(target_files_dir, subdir)):
1253 partition_map[partition] = subdir
1254 break
1255 return partition_map
1256
1257
Daniel Normand3351562020-10-29 12:33:11 -07001258def SharedUidPartitionViolations(uid_dict, partition_groups):
1259 """Checks for APK sharedUserIds that cross partition group boundaries.
1260
1261 This uses a single or merged build's shareduid_violation_modules.json
1262 output file, as generated by find_shareduid_violation.py or
1263 core/tasks/find-shareduid-violation.mk.
1264
1265 An error is defined as a sharedUserId that is found in a set of partitions
1266 that span more than one partition group.
1267
1268 Args:
1269 uid_dict: A dictionary created by using the standard json module to read a
1270 complete shareduid_violation_modules.json file.
1271 partition_groups: A list of groups, where each group is a list of
1272 partitions.
1273
1274 Returns:
1275 A list of error messages.
1276 """
1277 errors = []
1278 for uid, partitions in uid_dict.items():
1279 found_in_groups = [
1280 group for group in partition_groups
1281 if set(partitions.keys()) & set(group)
1282 ]
1283 if len(found_in_groups) > 1:
1284 errors.append(
1285 "APK sharedUserId \"%s\" found across partition groups in partitions \"%s\""
1286 % (uid, ",".join(sorted(partitions.keys()))))
1287 return errors
1288
1289
Daniel Norman21c34f72020-11-11 17:25:50 -08001290def RunHostInitVerifier(product_out, partition_map):
1291 """Runs host_init_verifier on the init rc files within partitions.
1292
1293 host_init_verifier searches the etc/init path within each partition.
1294
1295 Args:
1296 product_out: PRODUCT_OUT directory, containing partition directories.
1297 partition_map: A map of partition name -> relative path within product_out.
1298 """
1299 allowed_partitions = ("system", "system_ext", "product", "vendor", "odm")
1300 cmd = ["host_init_verifier"]
1301 for partition, path in partition_map.items():
1302 if partition not in allowed_partitions:
1303 raise ExternalError("Unable to call host_init_verifier for partition %s" %
1304 partition)
1305 cmd.extend(["--out_%s" % partition, os.path.join(product_out, path)])
1306 # Add --property-contexts if the file exists on the partition.
1307 property_contexts = "%s_property_contexts" % (
1308 "plat" if partition == "system" else partition)
1309 property_contexts_path = os.path.join(product_out, path, "etc", "selinux",
1310 property_contexts)
1311 if os.path.exists(property_contexts_path):
1312 cmd.append("--property-contexts=%s" % property_contexts_path)
1313 # Add the passwd file if the file exists on the partition.
1314 passwd_path = os.path.join(product_out, path, "etc", "passwd")
1315 if os.path.exists(passwd_path):
1316 cmd.extend(["-p", passwd_path])
1317 return RunAndCheckOutput(cmd)
1318
1319
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001320def AppendAVBSigningArgs(cmd, partition):
1321 """Append signing arguments for avbtool."""
1322 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
1323 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -07001324 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
1325 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1326 if os.path.exists(new_key_path):
1327 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001328 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
1329 if key_path and algorithm:
1330 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -07001331 avb_salt = OPTIONS.info_dict.get("avb_salt")
1332 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -07001333 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -07001334 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001335
1336
Tao Bao765668f2019-10-04 22:03:00 -07001337def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -07001338 """Returns the VBMeta arguments for partition.
1339
1340 It sets up the VBMeta argument by including the partition descriptor from the
1341 given 'image', or by configuring the partition as a chained partition.
1342
1343 Args:
1344 partition: The name of the partition (e.g. "system").
1345 image: The path to the partition image.
1346 info_dict: A dict returned by common.LoadInfoDict(). Will use
1347 OPTIONS.info_dict if None has been given.
1348
1349 Returns:
1350 A list of VBMeta arguments.
1351 """
1352 if info_dict is None:
1353 info_dict = OPTIONS.info_dict
1354
1355 # Check if chain partition is used.
1356 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +08001357 if not key_path:
1358 return ["--include_descriptors_from_image", image]
1359
1360 # For a non-A/B device, we don't chain /recovery nor include its descriptor
1361 # into vbmeta.img. The recovery image will be configured on an independent
1362 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
1363 # See details at
1364 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -07001365 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +08001366 return []
1367
1368 # Otherwise chain the partition into vbmeta.
1369 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
1370 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -07001371
1372
Tao Bao02a08592018-07-22 12:40:45 -07001373def GetAvbChainedPartitionArg(partition, info_dict, key=None):
1374 """Constructs and returns the arg to build or verify a chained partition.
1375
1376 Args:
1377 partition: The partition name.
1378 info_dict: The info dict to look up the key info and rollback index
1379 location.
1380 key: The key to be used for building or verifying the partition. Defaults to
1381 the key listed in info_dict.
1382
1383 Returns:
1384 A string of form "partition:rollback_index_location:key" that can be used to
1385 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -07001386 """
1387 if key is None:
1388 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -07001389 if key and not os.path.exists(key) and OPTIONS.search_path:
1390 new_key_path = os.path.join(OPTIONS.search_path, key)
1391 if os.path.exists(new_key_path):
1392 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -07001393 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -07001394 rollback_index_location = info_dict[
1395 "avb_" + partition + "_rollback_index_location"]
1396 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
1397
1398
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001399def _HasGkiCertificationArgs():
1400 return ("gki_signing_key_path" in OPTIONS.info_dict and
1401 "gki_signing_algorithm" in OPTIONS.info_dict)
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001402
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001403
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001404def _GenerateGkiCertificate(image, image_name):
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001405 key_path = OPTIONS.info_dict.get("gki_signing_key_path")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001406 algorithm = OPTIONS.info_dict.get("gki_signing_algorithm")
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001407
1408 if not os.path.exists(key_path) and OPTIONS.search_path:
1409 new_key_path = os.path.join(OPTIONS.search_path, key_path)
1410 if os.path.exists(new_key_path):
1411 key_path = new_key_path
1412
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001413 # Checks key_path exists, before processing --gki_signing_* args.
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001414 if not os.path.exists(key_path):
Kelvin Zhang563750f2021-04-28 12:46:17 -04001415 raise ExternalError(
1416 'gki_signing_key_path: "{}" not found'.format(key_path))
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001417
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001418 output_certificate = tempfile.NamedTemporaryFile()
1419 cmd = [
1420 "generate_gki_certificate",
1421 "--name", image_name,
1422 "--algorithm", algorithm,
1423 "--key", key_path,
1424 "--output", output_certificate.name,
1425 image,
1426 ]
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001427
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001428 signature_args = OPTIONS.info_dict.get("gki_signing_signature_args", "")
1429 signature_args = signature_args.strip()
1430 if signature_args:
1431 cmd.extend(["--additional_avb_args", signature_args])
1432
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001433 args = OPTIONS.info_dict.get("avb_boot_add_hash_footer_args", "")
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001434 args = args.strip()
1435 if args:
1436 cmd.extend(["--additional_avb_args", args])
1437
1438 RunAndCheckOutput(cmd)
1439
1440 output_certificate.seek(os.SEEK_SET, 0)
1441 data = output_certificate.read()
1442 output_certificate.close()
1443 return data
Bowgo Tsai27c39b02021-03-12 21:40:32 +08001444
1445
Daniel Norman276f0622019-07-26 14:13:51 -07001446def BuildVBMeta(image_path, partitions, name, needed_partitions):
1447 """Creates a VBMeta image.
1448
1449 It generates the requested VBMeta image. The requested image could be for
1450 top-level or chained VBMeta image, which is determined based on the name.
1451
1452 Args:
1453 image_path: The output path for the new VBMeta image.
1454 partitions: A dict that's keyed by partition names with image paths as
Hongguang Chenf23364d2020-04-27 18:36:36 -07001455 values. Only valid partition names are accepted, as partitions listed
1456 in common.AVB_PARTITIONS and custom partitions listed in
1457 OPTIONS.info_dict.get("avb_custom_images_partition_list")
Daniel Norman276f0622019-07-26 14:13:51 -07001458 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
1459 needed_partitions: Partitions whose descriptors should be included into the
1460 generated VBMeta image.
1461
1462 Raises:
1463 AssertionError: On invalid input args.
1464 """
1465 avbtool = OPTIONS.info_dict["avb_avbtool"]
1466 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
1467 AppendAVBSigningArgs(cmd, name)
1468
Hongguang Chenf23364d2020-04-27 18:36:36 -07001469 custom_partitions = OPTIONS.info_dict.get(
1470 "avb_custom_images_partition_list", "").strip().split()
1471
Daniel Norman276f0622019-07-26 14:13:51 -07001472 for partition, path in partitions.items():
1473 if partition not in needed_partitions:
1474 continue
1475 assert (partition in AVB_PARTITIONS or
Hongguang Chenf23364d2020-04-27 18:36:36 -07001476 partition in AVB_VBMETA_PARTITIONS or
1477 partition in custom_partitions), \
Daniel Norman276f0622019-07-26 14:13:51 -07001478 'Unknown partition: {}'.format(partition)
1479 assert os.path.exists(path), \
1480 'Failed to find {} for {}'.format(path, partition)
1481 cmd.extend(GetAvbPartitionArg(partition, path))
1482
1483 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
1484 if args and args.strip():
1485 split_args = shlex.split(args)
1486 for index, arg in enumerate(split_args[:-1]):
Ivan Lozanob021b2a2020-07-28 09:31:06 -04001487 # Check that the image file exists. Some images might be defined
Daniel Norman276f0622019-07-26 14:13:51 -07001488 # as a path relative to source tree, which may not be available at the
1489 # same location when running this script (we have the input target_files
1490 # zip only). For such cases, we additionally scan other locations (e.g.
1491 # IMAGES/, RADIO/, etc) before bailing out.
1492 if arg == '--include_descriptors_from_image':
Tianjie Xueaed60c2020-03-12 00:33:28 -07001493 chained_image = split_args[index + 1]
1494 if os.path.exists(chained_image):
Daniel Norman276f0622019-07-26 14:13:51 -07001495 continue
1496 found = False
1497 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
1498 alt_path = os.path.join(
Tianjie Xueaed60c2020-03-12 00:33:28 -07001499 OPTIONS.input_tmp, dir_name, os.path.basename(chained_image))
Daniel Norman276f0622019-07-26 14:13:51 -07001500 if os.path.exists(alt_path):
1501 split_args[index + 1] = alt_path
1502 found = True
1503 break
Tianjie Xueaed60c2020-03-12 00:33:28 -07001504 assert found, 'Failed to find {}'.format(chained_image)
Daniel Norman276f0622019-07-26 14:13:51 -07001505 cmd.extend(split_args)
1506
1507 RunAndCheckOutput(cmd)
1508
1509
jiajia tang836f76b2021-04-02 14:48:26 +08001510def _MakeRamdisk(sourcedir, fs_config_file=None,
1511 ramdisk_format=RamdiskFormat.GZ):
Steve Mucklee1b10862019-07-10 10:49:37 -07001512 ramdisk_img = tempfile.NamedTemporaryFile()
1513
1514 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
1515 cmd = ["mkbootfs", "-f", fs_config_file,
1516 os.path.join(sourcedir, "RAMDISK")]
1517 else:
1518 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
1519 p1 = Run(cmd, stdout=subprocess.PIPE)
jiajia tang836f76b2021-04-02 14:48:26 +08001520 if ramdisk_format == RamdiskFormat.LZ4:
Kelvin Zhangcff4d762020-07-29 16:37:51 -04001521 p2 = Run(["lz4", "-l", "-12", "--favor-decSpeed"], stdin=p1.stdout,
J. Avila98cd4cc2020-06-10 20:09:10 +00001522 stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001523 elif ramdisk_format == RamdiskFormat.GZ:
J. Avila98cd4cc2020-06-10 20:09:10 +00001524 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
jiajia tang836f76b2021-04-02 14:48:26 +08001525 else:
1526 raise ValueError("Only support lz4 or minigzip ramdisk format.")
Steve Mucklee1b10862019-07-10 10:49:37 -07001527
1528 p2.wait()
1529 p1.wait()
1530 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
J. Avila98cd4cc2020-06-10 20:09:10 +00001531 assert p2.returncode == 0, "compression of %s ramdisk failed" % (sourcedir,)
Steve Mucklee1b10862019-07-10 10:49:37 -07001532
1533 return ramdisk_img
1534
1535
Steve Muckle9793cf62020-04-08 18:27:00 -07001536def _BuildBootableImage(image_name, sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -08001537 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001538 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001539
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001540 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001541 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1542 we are building a two-step special image (i.e. building a recovery image to
1543 be loaded into /boot in two-step OTAs).
1544
1545 Return the image data, or None if sourcedir does not appear to contains files
1546 for building the requested image.
1547 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001548
Yifan Hong63c5ca12020-10-08 11:54:02 -07001549 if info_dict is None:
1550 info_dict = OPTIONS.info_dict
1551
Steve Muckle9793cf62020-04-08 18:27:00 -07001552 # "boot" or "recovery", without extension.
1553 partition_name = os.path.basename(sourcedir).lower()
1554
Yifan Hong63c5ca12020-10-08 11:54:02 -07001555 kernel = None
Steve Muckle9793cf62020-04-08 18:27:00 -07001556 if partition_name == "recovery":
Yifan Hong63c5ca12020-10-08 11:54:02 -07001557 if info_dict.get("exclude_kernel_from_recovery_image") == "true":
1558 logger.info("Excluded kernel binary from recovery image.")
1559 else:
1560 kernel = "kernel"
Devin Mooreafdd7c72021-12-13 22:04:08 +00001561 elif partition_name == "init_boot":
1562 pass
Steve Muckle9793cf62020-04-08 18:27:00 -07001563 else:
1564 kernel = image_name.replace("boot", "kernel")
Kelvin Zhang0876c412020-06-23 15:06:58 -04001565 kernel = kernel.replace(".img", "")
Yifan Hong63c5ca12020-10-08 11:54:02 -07001566 if kernel and not os.access(os.path.join(sourcedir, kernel), os.F_OK):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001567 return None
1568
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001569 kernel_path = os.path.join(sourcedir, kernel) if kernel else None
1570
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001571 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001572 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001573
Doug Zongkereef39442009-04-02 12:14:19 -07001574 img = tempfile.NamedTemporaryFile()
1575
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001576 if has_ramdisk:
jiajia tang836f76b2021-04-02 14:48:26 +08001577 ramdisk_format = _GetRamdiskFormat(info_dict)
1578 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file,
1579 ramdisk_format=ramdisk_format)
Doug Zongkereef39442009-04-02 12:14:19 -07001580
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001581 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1582 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1583
Yifan Hong63c5ca12020-10-08 11:54:02 -07001584 cmd = [mkbootimg]
Yi-Yo Chiang36054e22022-01-08 22:29:30 +08001585 if kernel_path is not None:
1586 cmd.extend(["--kernel", kernel_path])
Doug Zongker38a649f2009-06-17 09:07:09 -07001587
Benoit Fradina45a8682014-07-14 21:00:43 +02001588 fn = os.path.join(sourcedir, "second")
1589 if os.access(fn, os.F_OK):
1590 cmd.append("--second")
1591 cmd.append(fn)
1592
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001593 fn = os.path.join(sourcedir, "dtb")
1594 if os.access(fn, os.F_OK):
1595 cmd.append("--dtb")
1596 cmd.append(fn)
1597
Doug Zongker171f1cd2009-06-15 22:36:37 -07001598 fn = os.path.join(sourcedir, "cmdline")
1599 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001600 cmd.append("--cmdline")
1601 cmd.append(open(fn).read().rstrip("\n"))
1602
1603 fn = os.path.join(sourcedir, "base")
1604 if os.access(fn, os.F_OK):
1605 cmd.append("--base")
1606 cmd.append(open(fn).read().rstrip("\n"))
1607
Ying Wang4de6b5b2010-08-25 14:29:34 -07001608 fn = os.path.join(sourcedir, "pagesize")
1609 if os.access(fn, os.F_OK):
1610 cmd.append("--pagesize")
1611 cmd.append(open(fn).read().rstrip("\n"))
1612
Steve Mucklef84668e2020-03-16 19:13:46 -07001613 if partition_name == "recovery":
1614 args = info_dict.get("recovery_mkbootimg_args")
P.Adarsh Reddyd8e24ee2020-05-04 19:40:16 +05301615 if not args:
1616 # Fall back to "mkbootimg_args" for recovery image
1617 # in case "recovery_mkbootimg_args" is not set.
1618 args = info_dict.get("mkbootimg_args")
Devin Mooreafdd7c72021-12-13 22:04:08 +00001619 elif partition_name == "init_boot":
1620 args = info_dict.get("mkbootimg_init_args")
Steve Mucklef84668e2020-03-16 19:13:46 -07001621 else:
1622 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001623 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001624 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001625
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001626 args = info_dict.get("mkbootimg_version_args")
1627 if args and args.strip():
1628 cmd.extend(shlex.split(args))
Sami Tolvanen3303d902016-03-15 16:49:30 +00001629
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001630 if has_ramdisk:
1631 cmd.extend(["--ramdisk", ramdisk_img.name])
1632
Tao Baod95e9fd2015-03-29 23:07:41 -07001633 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001634 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001635 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001636 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001637 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001638 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001639
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001640 if partition_name == "recovery":
1641 if info_dict.get("include_recovery_dtbo") == "true":
1642 fn = os.path.join(sourcedir, "recovery_dtbo")
1643 cmd.extend(["--recovery_dtbo", fn])
1644 if info_dict.get("include_recovery_acpio") == "true":
1645 fn = os.path.join(sourcedir, "recovery_acpio")
1646 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001647
Tao Bao986ee862018-10-04 15:46:16 -07001648 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001649
Yi-Yo Chiang24da1a42022-02-22 19:51:15 +08001650 if _HasGkiCertificationArgs():
1651 if not os.path.exists(img.name):
1652 raise ValueError("Cannot find GKI boot.img")
1653 if kernel_path is None or not os.path.exists(kernel_path):
1654 raise ValueError("Cannot find GKI kernel.img")
1655
1656 # Certify GKI images.
1657 boot_signature_bytes = b''
1658 boot_signature_bytes += _GenerateGkiCertificate(img.name, "boot")
1659 boot_signature_bytes += _GenerateGkiCertificate(
1660 kernel_path, "generic_kernel")
1661
1662 BOOT_SIGNATURE_SIZE = 16 * 1024
1663 if len(boot_signature_bytes) > BOOT_SIGNATURE_SIZE:
1664 raise ValueError(
1665 f"GKI boot_signature size must be <= {BOOT_SIGNATURE_SIZE}")
1666 boot_signature_bytes += (
1667 b'\0' * (BOOT_SIGNATURE_SIZE - len(boot_signature_bytes)))
1668 assert len(boot_signature_bytes) == BOOT_SIGNATURE_SIZE
1669
1670 with open(img.name, 'ab') as f:
1671 f.write(boot_signature_bytes)
1672
Tao Bao76def242017-11-21 09:25:31 -08001673 if (info_dict.get("boot_signer") == "true" and
Kelvin Zhang563750f2021-04-28 12:46:17 -04001674 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001675 # Hard-code the path as "/boot" for two-step special recovery image (which
1676 # will be loaded into /boot during the two-step OTA).
1677 if two_step_image:
1678 path = "/boot"
1679 else:
Tao Baobf70c312017-07-11 17:27:55 -07001680 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001681 cmd = [OPTIONS.boot_signer_path]
1682 cmd.extend(OPTIONS.boot_signer_args)
1683 cmd.extend([path, img.name,
1684 info_dict["verity_key"] + ".pk8",
1685 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001686 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001687
Tao Baod95e9fd2015-03-29 23:07:41 -07001688 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001689 elif info_dict.get("vboot"):
Tao Baobf70c312017-07-11 17:27:55 -07001690 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001691 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001692 # We have switched from the prebuilt futility binary to using the tool
1693 # (futility-host) built from the source. Override the setting in the old
1694 # TF.zip.
1695 futility = info_dict["futility"]
1696 if futility.startswith("prebuilts/"):
1697 futility = "futility-host"
1698 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001699 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001700 info_dict["vboot_key"] + ".vbprivk",
1701 info_dict["vboot_subkey"] + ".vbprivk",
1702 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001703 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001704 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001705
Tao Baof3282b42015-04-01 11:21:55 -07001706 # Clean up the temp files.
1707 img_unsigned.close()
1708 img_keyblock.close()
1709
David Zeuthen8fecb282017-12-01 16:24:01 -05001710 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001711 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001712 avbtool = info_dict["avb_avbtool"]
Steve Muckle903a1ca2020-05-07 17:32:10 -07001713 if partition_name == "recovery":
1714 part_size = info_dict["recovery_size"]
1715 else:
Kelvin Zhang0876c412020-06-23 15:06:58 -04001716 part_size = info_dict[image_name.replace(".img", "_size")]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001717 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c312017-07-11 17:27:55 -07001718 "--partition_size", str(part_size), "--partition_name",
1719 partition_name]
1720 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001721 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001722 if args and args.strip():
1723 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001724 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001725
1726 img.seek(os.SEEK_SET, 0)
1727 data = img.read()
1728
1729 if has_ramdisk:
1730 ramdisk_img.close()
1731 img.close()
1732
1733 return data
1734
1735
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001736def _SignBootableImage(image_path, prebuilt_name, partition_name,
1737 info_dict=None):
1738 """Performs AVB signing for a prebuilt boot.img.
1739
1740 Args:
1741 image_path: The full path of the image, e.g., /path/to/boot.img.
1742 prebuilt_name: The prebuilt image name, e.g., boot.img, boot-5.4-gz.img,
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001743 boot-5.10.img, recovery.img or init_boot.img.
1744 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001745 info_dict: The information dict read from misc_info.txt.
1746 """
1747 if info_dict is None:
1748 info_dict = OPTIONS.info_dict
1749
1750 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
1751 if info_dict.get("avb_enable") == "true":
1752 avbtool = info_dict["avb_avbtool"]
1753 if partition_name == "recovery":
1754 part_size = info_dict["recovery_size"]
1755 else:
1756 part_size = info_dict[prebuilt_name.replace(".img", "_size")]
1757
1758 cmd = [avbtool, "add_hash_footer", "--image", image_path,
1759 "--partition_size", str(part_size), "--partition_name",
1760 partition_name]
1761 AppendAVBSigningArgs(cmd, partition_name)
1762 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
1763 if args and args.strip():
1764 cmd.extend(shlex.split(args))
1765 RunAndCheckOutput(cmd)
1766
1767
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001768def HasRamdisk(partition_name, info_dict=None):
1769 """Returns true/false to see if a bootable image should have a ramdisk.
1770
1771 Args:
1772 partition_name: The partition name, e.g., 'boot', 'init_boot' or 'recovery'.
1773 info_dict: The information dict read from misc_info.txt.
1774 """
1775 if info_dict is None:
1776 info_dict = OPTIONS.info_dict
1777
1778 if partition_name != "boot":
1779 return True # init_boot.img or recovery.img has a ramdisk.
1780
1781 if info_dict.get("recovery_as_boot") == "true":
1782 return True # the recovery-as-boot boot.img has a RECOVERY ramdisk.
1783
1784 if info_dict.get("system_root_image") == "true":
1785 # The ramdisk content is merged into the system.img, so there is NO
1786 # ramdisk in the boot.img or boot-<kernel version>.img.
1787 return False
1788
1789 if info_dict.get("init_boot") == "true":
1790 # The ramdisk is moved to the init_boot.img, so there is NO
1791 # ramdisk in the boot.img or boot-<kernel version>.img.
1792 return False
1793
1794 return True
1795
1796
Doug Zongkerd5131602012-08-02 14:46:42 -07001797def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001798 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001799 """Return a File object with the desired bootable image.
1800
1801 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1802 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1803 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001804
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001805 if info_dict is None:
1806 info_dict = OPTIONS.info_dict
1807
Doug Zongker55d93282011-01-25 17:03:34 -08001808 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1809 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001810 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001811 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001812
1813 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1814 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001815 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001816 return File.FromLocalFile(name, prebuilt_path)
1817
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001818 partition_name = tree_subdir.lower()
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001819 prebuilt_path = os.path.join(unpack_dir, "PREBUILT_IMAGES", prebuilt_name)
1820 if os.path.exists(prebuilt_path):
1821 logger.info("Re-signing prebuilt %s from PREBUILT_IMAGES...", prebuilt_name)
1822 signed_img = MakeTempFile()
1823 shutil.copy(prebuilt_path, signed_img)
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001824 _SignBootableImage(signed_img, prebuilt_name, partition_name, info_dict)
1825 return File.FromLocalFile(name, signed_img)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001826
Bowgo Tsaicf9ead82021-05-20 00:14:42 +08001827 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001828
Bowgo Tsai88fc2bd2022-01-05 20:19:25 +08001829 has_ramdisk = HasRamdisk(partition_name, info_dict)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001830
Doug Zongker6f1d0312014-08-22 08:07:12 -07001831 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
Steve Muckle9793cf62020-04-08 18:27:00 -07001832 data = _BuildBootableImage(prebuilt_name, os.path.join(unpack_dir, tree_subdir),
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001833 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001834 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001835 if data:
1836 return File(name, data)
1837 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001838
Doug Zongkereef39442009-04-02 12:14:19 -07001839
Steve Mucklee1b10862019-07-10 10:49:37 -07001840def _BuildVendorBootImage(sourcedir, info_dict=None):
1841 """Build a vendor boot image from the specified sourcedir.
1842
1843 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1844 turn them into a vendor boot image.
1845
1846 Return the image data, or None if sourcedir does not appear to contains files
1847 for building the requested image.
1848 """
1849
1850 if info_dict is None:
1851 info_dict = OPTIONS.info_dict
1852
1853 img = tempfile.NamedTemporaryFile()
1854
jiajia tang836f76b2021-04-02 14:48:26 +08001855 ramdisk_format = _GetRamdiskFormat(info_dict)
1856 ramdisk_img = _MakeRamdisk(sourcedir, ramdisk_format=ramdisk_format)
Steve Mucklee1b10862019-07-10 10:49:37 -07001857
1858 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1859 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1860
1861 cmd = [mkbootimg]
1862
1863 fn = os.path.join(sourcedir, "dtb")
1864 if os.access(fn, os.F_OK):
1865 cmd.append("--dtb")
1866 cmd.append(fn)
1867
1868 fn = os.path.join(sourcedir, "vendor_cmdline")
1869 if os.access(fn, os.F_OK):
1870 cmd.append("--vendor_cmdline")
1871 cmd.append(open(fn).read().rstrip("\n"))
1872
1873 fn = os.path.join(sourcedir, "base")
1874 if os.access(fn, os.F_OK):
1875 cmd.append("--base")
1876 cmd.append(open(fn).read().rstrip("\n"))
1877
1878 fn = os.path.join(sourcedir, "pagesize")
1879 if os.access(fn, os.F_OK):
1880 cmd.append("--pagesize")
1881 cmd.append(open(fn).read().rstrip("\n"))
1882
1883 args = info_dict.get("mkbootimg_args")
1884 if args and args.strip():
1885 cmd.extend(shlex.split(args))
1886
1887 args = info_dict.get("mkbootimg_version_args")
1888 if args and args.strip():
1889 cmd.extend(shlex.split(args))
1890
1891 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1892 cmd.extend(["--vendor_boot", img.name])
1893
Devin Moore50509012021-01-13 10:45:04 -08001894 fn = os.path.join(sourcedir, "vendor_bootconfig")
1895 if os.access(fn, os.F_OK):
1896 cmd.append("--vendor_bootconfig")
1897 cmd.append(fn)
1898
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001899 ramdisk_fragment_imgs = []
1900 fn = os.path.join(sourcedir, "vendor_ramdisk_fragments")
1901 if os.access(fn, os.F_OK):
1902 ramdisk_fragments = shlex.split(open(fn).read().rstrip("\n"))
1903 for ramdisk_fragment in ramdisk_fragments:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001904 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1905 ramdisk_fragment, "mkbootimg_args")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001906 cmd.extend(shlex.split(open(fn).read().rstrip("\n")))
Kelvin Zhang563750f2021-04-28 12:46:17 -04001907 fn = os.path.join(sourcedir, "RAMDISK_FRAGMENTS",
1908 ramdisk_fragment, "prebuilt_ramdisk")
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001909 # Use prebuilt image if found, else create ramdisk from supplied files.
1910 if os.access(fn, os.F_OK):
1911 ramdisk_fragment_pathname = fn
1912 else:
Kelvin Zhang563750f2021-04-28 12:46:17 -04001913 ramdisk_fragment_root = os.path.join(
1914 sourcedir, "RAMDISK_FRAGMENTS", ramdisk_fragment)
jiajia tang836f76b2021-04-02 14:48:26 +08001915 ramdisk_fragment_img = _MakeRamdisk(ramdisk_fragment_root,
1916 ramdisk_format=ramdisk_format)
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001917 ramdisk_fragment_imgs.append(ramdisk_fragment_img)
1918 ramdisk_fragment_pathname = ramdisk_fragment_img.name
1919 cmd.extend(["--vendor_ramdisk_fragment", ramdisk_fragment_pathname])
1920
Steve Mucklee1b10862019-07-10 10:49:37 -07001921 RunAndCheckOutput(cmd)
1922
1923 # AVB: if enabled, calculate and add hash.
1924 if info_dict.get("avb_enable") == "true":
1925 avbtool = info_dict["avb_avbtool"]
1926 part_size = info_dict["vendor_boot_size"]
1927 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001928 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001929 AppendAVBSigningArgs(cmd, "vendor_boot")
1930 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1931 if args and args.strip():
1932 cmd.extend(shlex.split(args))
1933 RunAndCheckOutput(cmd)
1934
1935 img.seek(os.SEEK_SET, 0)
1936 data = img.read()
1937
Yo Chiangd21e7dc2020-12-10 18:42:47 +08001938 for f in ramdisk_fragment_imgs:
1939 f.close()
Steve Mucklee1b10862019-07-10 10:49:37 -07001940 ramdisk_img.close()
1941 img.close()
1942
1943 return data
1944
1945
1946def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1947 info_dict=None):
1948 """Return a File object with the desired vendor boot image.
1949
1950 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1951 the source files in 'unpack_dir'/'tree_subdir'."""
1952
1953 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1954 if os.path.exists(prebuilt_path):
1955 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1956 return File.FromLocalFile(name, prebuilt_path)
1957
1958 logger.info("building image from target_files %s...", tree_subdir)
1959
1960 if info_dict is None:
1961 info_dict = OPTIONS.info_dict
1962
Kelvin Zhang0876c412020-06-23 15:06:58 -04001963 data = _BuildVendorBootImage(
1964 os.path.join(unpack_dir, tree_subdir), info_dict)
Steve Mucklee1b10862019-07-10 10:49:37 -07001965 if data:
1966 return File(name, data)
1967 return None
1968
1969
Narayan Kamatha07bf042017-08-14 14:49:21 +01001970def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001971 """Gunzips the given gzip compressed file to a given output file."""
1972 with gzip.open(in_filename, "rb") as in_file, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04001973 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001974 shutil.copyfileobj(in_file, out_file)
1975
1976
Tao Bao0ff15de2019-03-20 11:26:06 -07001977def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001978 """Unzips the archive to the given directory.
1979
1980 Args:
1981 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001982 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001983 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1984 archvie. Non-matching patterns will be filtered out. If there's no match
1985 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001986 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001987 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001988 if patterns is not None:
1989 # Filter out non-matching patterns. unzip will complain otherwise.
Kelvin Zhang928c2342020-09-22 16:15:57 -04001990 with zipfile.ZipFile(filename, allowZip64=True) as input_zip:
Tao Bao0ff15de2019-03-20 11:26:06 -07001991 names = input_zip.namelist()
1992 filtered = [
1993 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1994
1995 # There isn't any matching files. Don't unzip anything.
1996 if not filtered:
1997 return
1998 cmd.extend(filtered)
1999
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002000 RunAndCheckOutput(cmd)
2001
2002
Daniel Norman78554ea2021-09-14 10:29:38 -07002003def UnzipTemp(filename, patterns=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08002004 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08002005
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002006 Args:
2007 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
2008 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
2009
Daniel Norman78554ea2021-09-14 10:29:38 -07002010 patterns: Files to unzip from the archive. If omitted, will unzip the entire
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08002011 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08002012
Tao Bao1c830bf2017-12-25 10:43:47 -08002013 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08002014 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08002015 """
Doug Zongkereef39442009-04-02 12:14:19 -07002016
Tao Bao1c830bf2017-12-25 10:43:47 -08002017 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08002018 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
2019 if m:
Daniel Norman78554ea2021-09-14 10:29:38 -07002020 UnzipToDir(m.group(1), tmp, patterns)
2021 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002022 filename = m.group(1)
2023 else:
Daniel Norman78554ea2021-09-14 10:29:38 -07002024 UnzipToDir(filename, tmp, patterns)
Doug Zongker55d93282011-01-25 17:03:34 -08002025
Tao Baodba59ee2018-01-09 13:21:02 -08002026 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07002027
2028
Yifan Hong8a66a712019-04-04 15:37:57 -07002029def GetUserImage(which, tmpdir, input_zip,
2030 info_dict=None,
2031 allow_shared_blocks=None,
2032 hashtree_info_generator=None,
2033 reset_file_map=False):
2034 """Returns an Image object suitable for passing to BlockImageDiff.
2035
2036 This function loads the specified image from the given path. If the specified
2037 image is sparse, it also performs additional processing for OTA purpose. For
2038 example, it always adds block 0 to clobbered blocks list. It also detects
2039 files that cannot be reconstructed from the block list, for whom we should
2040 avoid applying imgdiff.
2041
2042 Args:
2043 which: The partition name.
2044 tmpdir: The directory that contains the prebuilt image and block map file.
2045 input_zip: The target-files ZIP archive.
2046 info_dict: The dict to be looked up for relevant info.
2047 allow_shared_blocks: If image is sparse, whether having shared blocks is
2048 allowed. If none, it is looked up from info_dict.
2049 hashtree_info_generator: If present and image is sparse, generates the
2050 hashtree_info for this sparse image.
2051 reset_file_map: If true and image is sparse, reset file map before returning
2052 the image.
2053 Returns:
2054 A Image object. If it is a sparse image and reset_file_map is False, the
2055 image will have file_map info loaded.
2056 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002057 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07002058 info_dict = LoadInfoDict(input_zip)
2059
2060 is_sparse = info_dict.get("extfs_sparse_flag")
David Anderson9e95a022021-08-31 21:32:45 -07002061 if info_dict.get(which + "_disable_sparse"):
2062 is_sparse = False
Yifan Hong8a66a712019-04-04 15:37:57 -07002063
2064 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
2065 # shared blocks (i.e. some blocks will show up in multiple files' block
2066 # list). We can only allocate such shared blocks to the first "owner", and
2067 # disable imgdiff for all later occurrences.
2068 if allow_shared_blocks is None:
2069 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
2070
2071 if is_sparse:
2072 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2073 hashtree_info_generator)
2074 if reset_file_map:
2075 img.ResetFileMap()
2076 return img
Kelvin Zhang0876c412020-06-23 15:06:58 -04002077 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
Yifan Hong8a66a712019-04-04 15:37:57 -07002078
2079
2080def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
2081 """Returns a Image object suitable for passing to BlockImageDiff.
2082
2083 This function loads the specified non-sparse image from the given path.
2084
2085 Args:
2086 which: The partition name.
2087 tmpdir: The directory that contains the prebuilt image and block map file.
2088 Returns:
2089 A Image object.
2090 """
2091 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2092 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2093
2094 # The image and map files must have been created prior to calling
2095 # ota_from_target_files.py (since LMP).
2096 assert os.path.exists(path) and os.path.exists(mappath)
2097
Tianjie Xu41976c72019-07-03 13:57:01 -07002098 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
2099
Yifan Hong8a66a712019-04-04 15:37:57 -07002100
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002101def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
2102 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08002103 """Returns a SparseImage object suitable for passing to BlockImageDiff.
2104
2105 This function loads the specified sparse image from the given path, and
2106 performs additional processing for OTA purpose. For example, it always adds
2107 block 0 to clobbered blocks list. It also detects files that cannot be
2108 reconstructed from the block list, for whom we should avoid applying imgdiff.
2109
2110 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07002111 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08002112 tmpdir: The directory that contains the prebuilt image and block map file.
2113 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08002114 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002115 hashtree_info_generator: If present, generates the hashtree_info for this
2116 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08002117 Returns:
2118 A SparseImage object, with file_map info loaded.
2119 """
Tao Baoc765cca2018-01-31 17:32:40 -08002120 path = os.path.join(tmpdir, "IMAGES", which + ".img")
2121 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
2122
2123 # The image and map files must have been created prior to calling
2124 # ota_from_target_files.py (since LMP).
2125 assert os.path.exists(path) and os.path.exists(mappath)
2126
2127 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
2128 # it to clobbered_blocks so that it will be written to the target
2129 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
2130 clobbered_blocks = "0"
2131
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07002132 image = sparse_img.SparseImage(
2133 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
2134 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08002135
2136 # block.map may contain less blocks, because mke2fs may skip allocating blocks
2137 # if they contain all zeros. We can't reconstruct such a file from its block
2138 # list. Tag such entries accordingly. (Bug: 65213616)
2139 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08002140 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07002141 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08002142 continue
2143
Tom Cherryd14b8952018-08-09 14:26:00 -07002144 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
2145 # filename listed in system.map may contain an additional leading slash
2146 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
2147 # results.
wangshumin71af07a2021-02-24 11:08:47 +08002148 # And handle another special case, where files not under /system
Tom Cherryd14b8952018-08-09 14:26:00 -07002149 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
wangshumin71af07a2021-02-24 11:08:47 +08002150 arcname = entry.lstrip('/')
2151 if which == 'system' and not arcname.startswith('system'):
Tao Baod3554e62018-07-10 15:31:22 -07002152 arcname = 'ROOT/' + arcname
wangshumin71af07a2021-02-24 11:08:47 +08002153 else:
2154 arcname = arcname.replace(which, which.upper(), 1)
Tao Baod3554e62018-07-10 15:31:22 -07002155
2156 assert arcname in input_zip.namelist(), \
2157 "Failed to find the ZIP entry for {}".format(entry)
2158
Tao Baoc765cca2018-01-31 17:32:40 -08002159 info = input_zip.getinfo(arcname)
2160 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08002161
2162 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08002163 # image, check the original block list to determine its completeness. Note
2164 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08002165 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08002166 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08002167
Tao Baoc765cca2018-01-31 17:32:40 -08002168 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
2169 ranges.extra['incomplete'] = True
2170
2171 return image
2172
2173
Doug Zongkereef39442009-04-02 12:14:19 -07002174def GetKeyPasswords(keylist):
2175 """Given a list of keys, prompt the user to enter passwords for
2176 those which require them. Return a {key: password} dict. password
2177 will be None if the key has no password."""
2178
Doug Zongker8ce7c252009-05-22 13:34:54 -07002179 no_passwords = []
2180 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07002181 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07002182 devnull = open("/dev/null", "w+b")
Cole Faustb820bcd2021-10-28 13:59:48 -07002183
2184 # sorted() can't compare strings to None, so convert Nones to strings
2185 for k in sorted(keylist, key=lambda x: x if x is not None else ""):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002186 # We don't need a password for things that aren't really keys.
Jooyung Han8caba5e2021-10-27 03:58:09 +09002187 if k in SPECIAL_CERT_STRINGS or k is None:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002188 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07002189 continue
2190
T.R. Fullhart37e10522013-03-18 10:31:26 -07002191 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07002192 "-inform", "DER", "-nocrypt"],
2193 stdin=devnull.fileno(),
2194 stdout=devnull.fileno(),
2195 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07002196 p.communicate()
2197 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002198 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07002199 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002200 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07002201 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
2202 "-inform", "DER", "-passin", "pass:"],
2203 stdin=devnull.fileno(),
2204 stdout=devnull.fileno(),
2205 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07002206 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07002207 if p.returncode == 0:
2208 # Encrypted key with empty string as password.
2209 key_passwords[k] = ''
2210 elif stderr.startswith('Error decrypting key'):
2211 # Definitely encrypted key.
2212 # It would have said "Error reading key" if it didn't parse correctly.
2213 need_passwords.append(k)
2214 else:
2215 # Potentially, a type of key that openssl doesn't understand.
2216 # We'll let the routines in signapk.jar handle it.
2217 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07002218 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07002219
T.R. Fullhart37e10522013-03-18 10:31:26 -07002220 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08002221 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07002222 return key_passwords
2223
2224
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002225def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07002226 """Gets the minSdkVersion declared in the APK.
2227
Martin Stjernholm58472e82022-01-07 22:08:47 +00002228 It calls OPTIONS.aapt2_path to query the embedded minSdkVersion from the given
2229 APK file. This can be both a decimal number (API Level) or a codename.
Tao Baof47bf0f2018-03-21 23:28:51 -07002230
2231 Args:
2232 apk_name: The APK filename.
2233
2234 Returns:
2235 The parsed SDK version string.
2236
2237 Raises:
2238 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002239 """
Tao Baof47bf0f2018-03-21 23:28:51 -07002240 proc = Run(
Martin Stjernholm58472e82022-01-07 22:08:47 +00002241 [OPTIONS.aapt2_path, "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07002242 stderr=subprocess.PIPE)
2243 stdoutdata, stderrdata = proc.communicate()
2244 if proc.returncode != 0:
2245 raise ExternalError(
Kelvin Zhang21118bb2022-02-12 09:40:35 -08002246 "Failed to obtain minSdkVersion for {}: aapt2 return code {}:\n{}\n{}".format(
2247 apk_name, proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002248
Tao Baof47bf0f2018-03-21 23:28:51 -07002249 for line in stdoutdata.split("\n"):
2250 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002251 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
2252 if m:
2253 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09002254 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002255
2256
2257def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07002258 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002259
Tao Baof47bf0f2018-03-21 23:28:51 -07002260 If minSdkVersion is set to a codename, it is translated to a number using the
2261 provided map.
2262
2263 Args:
2264 apk_name: The APK filename.
2265
2266 Returns:
2267 The parsed SDK version number.
2268
2269 Raises:
2270 ExternalError: On failing to get the min SDK version number.
2271 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002272 version = GetMinSdkVersion(apk_name)
2273 try:
2274 return int(version)
2275 except ValueError:
2276 # Not a decimal number. Codename?
2277 if version in codename_to_api_level_map:
2278 return codename_to_api_level_map[version]
Kelvin Zhang0876c412020-06-23 15:06:58 -04002279 raise ExternalError(
2280 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
2281 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002282
2283
2284def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07002285 codename_to_api_level_map=None, whole_file=False,
2286 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07002287 """Sign the input_name zip/jar/apk, producing output_name. Use the
2288 given key and password (the latter may be None if the key does not
2289 have a password.
2290
Doug Zongker951495f2009-08-14 12:44:19 -07002291 If whole_file is true, use the "-w" option to SignApk to embed a
2292 signature that covers the whole file in the archive comment of the
2293 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002294
2295 min_api_level is the API Level (int) of the oldest platform this file may end
2296 up on. If not specified for an APK, the API Level is obtained by interpreting
2297 the minSdkVersion attribute of the APK's AndroidManifest.xml.
2298
2299 codename_to_api_level_map is needed to translate the codename which may be
2300 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07002301
2302 Caller may optionally specify extra args to be passed to SignApk, which
2303 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07002304 """
Tao Bao76def242017-11-21 09:25:31 -08002305 if codename_to_api_level_map is None:
2306 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07002307 if extra_signapk_args is None:
2308 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07002309
Alex Klyubin9667b182015-12-10 13:38:50 -08002310 java_library_path = os.path.join(
2311 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
2312
Tao Baoe95540e2016-11-08 12:08:53 -08002313 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
2314 ["-Djava.library.path=" + java_library_path,
2315 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07002316 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07002317 if whole_file:
2318 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08002319
2320 min_sdk_version = min_api_level
2321 if min_sdk_version is None:
2322 if not whole_file:
2323 min_sdk_version = GetMinSdkVersionInt(
2324 input_name, codename_to_api_level_map)
2325 if min_sdk_version is not None:
2326 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
2327
T.R. Fullhart37e10522013-03-18 10:31:26 -07002328 cmd.extend([key + OPTIONS.public_key_suffix,
2329 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08002330 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07002331
Tao Bao73dd4f42018-10-04 16:25:33 -07002332 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07002333 if password is not None:
2334 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07002335 stdoutdata, _ = proc.communicate(password)
2336 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07002337 raise ExternalError(
2338 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07002339 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07002340
Doug Zongkereef39442009-04-02 12:14:19 -07002341
Doug Zongker37974732010-09-16 17:44:38 -07002342def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08002343 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07002344
Tao Bao9dd909e2017-11-14 11:27:32 -08002345 For non-AVB images, raise exception if the data is too big. Print a warning
2346 if the data is nearing the maximum size.
2347
2348 For AVB images, the actual image size should be identical to the limit.
2349
2350 Args:
2351 data: A string that contains all the data for the partition.
2352 target: The partition name. The ".img" suffix is optional.
2353 info_dict: The dict to be looked up for relevant info.
2354 """
Dan Albert8b72aef2015-03-23 19:13:21 -07002355 if target.endswith(".img"):
2356 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002357 mount_point = "/" + target
2358
Ying Wangf8824af2014-06-03 14:07:27 -07002359 fs_type = None
2360 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002361 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07002362 if mount_point == "/userdata":
2363 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07002364 p = info_dict["fstab"][mount_point]
2365 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08002366 device = p.device
2367 if "/" in device:
2368 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08002369 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07002370 if not fs_type or not limit:
2371 return
Doug Zongkereef39442009-04-02 12:14:19 -07002372
Andrew Boie0f9aec82012-02-14 09:32:52 -08002373 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08002374 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
2375 # path.
2376 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
2377 if size != limit:
2378 raise ExternalError(
2379 "Mismatching image size for %s: expected %d actual %d" % (
2380 target, limit, size))
2381 else:
2382 pct = float(size) * 100.0 / limit
2383 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
2384 if pct >= 99.0:
2385 raise ExternalError(msg)
Kelvin Zhang0876c412020-06-23 15:06:58 -04002386
2387 if pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002388 logger.warning("\n WARNING: %s\n", msg)
2389 else:
2390 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07002391
2392
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002393def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08002394 """Parses the APK certs info from a given target-files zip.
2395
2396 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
2397 tuple with the following elements: (1) a dictionary that maps packages to
2398 certs (based on the "certificate" and "private_key" attributes in the file;
2399 (2) a string representing the extension of compressed APKs in the target files
2400 (e.g ".gz", ".bro").
2401
2402 Args:
2403 tf_zip: The input target_files ZipFile (already open).
2404
2405 Returns:
2406 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
2407 the extension string of compressed APKs (e.g. ".gz"), or None if there's
2408 no compressed APKs.
2409 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002410 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01002411 compressed_extension = None
2412
Tao Bao0f990332017-09-08 19:02:54 -07002413 # META/apkcerts.txt contains the info for _all_ the packages known at build
2414 # time. Filter out the ones that are not installed.
2415 installed_files = set()
2416 for name in tf_zip.namelist():
2417 basename = os.path.basename(name)
2418 if basename:
2419 installed_files.add(basename)
2420
Tao Baoda30cfa2017-12-01 16:19:46 -08002421 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002422 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002423 if not line:
2424 continue
Tao Bao818ddf52018-01-05 11:17:34 -08002425 m = re.match(
2426 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
Bill Peckham5c7b0342020-04-03 15:36:23 -07002427 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*?)")?'
2428 r'(\s+partition="(?P<PARTITION>.*?)")?$',
Tao Bao818ddf52018-01-05 11:17:34 -08002429 line)
2430 if not m:
2431 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01002432
Tao Bao818ddf52018-01-05 11:17:34 -08002433 matches = m.groupdict()
2434 cert = matches["CERT"]
2435 privkey = matches["PRIVKEY"]
2436 name = matches["NAME"]
2437 this_compressed_extension = matches["COMPRESSED"]
2438
2439 public_key_suffix_len = len(OPTIONS.public_key_suffix)
2440 private_key_suffix_len = len(OPTIONS.private_key_suffix)
2441 if cert in SPECIAL_CERT_STRINGS and not privkey:
2442 certmap[name] = cert
2443 elif (cert.endswith(OPTIONS.public_key_suffix) and
2444 privkey.endswith(OPTIONS.private_key_suffix) and
2445 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
2446 certmap[name] = cert[:-public_key_suffix_len]
2447 else:
2448 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
2449
2450 if not this_compressed_extension:
2451 continue
2452
2453 # Only count the installed files.
2454 filename = name + '.' + this_compressed_extension
2455 if filename not in installed_files:
2456 continue
2457
2458 # Make sure that all the values in the compression map have the same
2459 # extension. We don't support multiple compression methods in the same
2460 # system image.
2461 if compressed_extension:
2462 if this_compressed_extension != compressed_extension:
2463 raise ValueError(
2464 "Multiple compressed extensions: {} vs {}".format(
2465 compressed_extension, this_compressed_extension))
2466 else:
2467 compressed_extension = this_compressed_extension
2468
2469 return (certmap,
2470 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08002471
2472
Doug Zongkereef39442009-04-02 12:14:19 -07002473COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07002474Global options
2475
2476 -p (--path) <dir>
2477 Prepend <dir>/bin to the list of places to search for binaries run by this
2478 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07002479
Doug Zongker05d3dea2009-06-22 11:32:31 -07002480 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07002481 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07002482
Tao Bao30df8b42018-04-23 15:32:53 -07002483 -x (--extra) <key=value>
2484 Add a key/value pair to the 'extras' dict, which device-specific extension
2485 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08002486
Doug Zongkereef39442009-04-02 12:14:19 -07002487 -v (--verbose)
2488 Show command lines being executed.
2489
2490 -h (--help)
2491 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07002492
2493 --logfile <file>
2494 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07002495"""
2496
Kelvin Zhang0876c412020-06-23 15:06:58 -04002497
Doug Zongkereef39442009-04-02 12:14:19 -07002498def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08002499 print(docstring.rstrip("\n"))
2500 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07002501
2502
2503def ParseOptions(argv,
2504 docstring,
2505 extra_opts="", extra_long_opts=(),
2506 extra_option_handler=None):
2507 """Parse the options in argv and return any arguments that aren't
2508 flags. docstring is the calling module's docstring, to be displayed
2509 for errors and -h. extra_opts and extra_long_opts are for flags
2510 defined by the caller, which are processed by passing them to
2511 extra_option_handler."""
2512
2513 try:
2514 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08002515 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08002516 ["help", "verbose", "path=", "signapk_path=",
Martin Stjernholm58472e82022-01-07 22:08:47 +00002517 "signapk_shared_library_path=", "extra_signapk_args=", "aapt2_path=",
Tianjie Xu88a759d2020-01-23 10:47:54 -08002518 "java_path=", "java_args=", "android_jar_path=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07002519 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
2520 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Jan Monsche147d482021-06-23 12:30:35 +02002521 "extra=", "logfile="] + list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07002522 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07002523 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08002524 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07002525 sys.exit(2)
2526
Doug Zongkereef39442009-04-02 12:14:19 -07002527 for o, a in opts:
2528 if o in ("-h", "--help"):
2529 Usage(docstring)
2530 sys.exit()
2531 elif o in ("-v", "--verbose"):
2532 OPTIONS.verbose = True
2533 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07002534 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002535 elif o in ("--signapk_path",):
2536 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08002537 elif o in ("--signapk_shared_library_path",):
2538 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002539 elif o in ("--extra_signapk_args",):
2540 OPTIONS.extra_signapk_args = shlex.split(a)
Martin Stjernholm58472e82022-01-07 22:08:47 +00002541 elif o in ("--aapt2_path",):
2542 OPTIONS.aapt2_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002543 elif o in ("--java_path",):
2544 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07002545 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08002546 OPTIONS.java_args = shlex.split(a)
Tianjie Xu88a759d2020-01-23 10:47:54 -08002547 elif o in ("--android_jar_path",):
2548 OPTIONS.android_jar_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07002549 elif o in ("--public_key_suffix",):
2550 OPTIONS.public_key_suffix = a
2551 elif o in ("--private_key_suffix",):
2552 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08002553 elif o in ("--boot_signer_path",):
2554 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07002555 elif o in ("--boot_signer_args",):
2556 OPTIONS.boot_signer_args = shlex.split(a)
2557 elif o in ("--verity_signer_path",):
2558 OPTIONS.verity_signer_path = a
2559 elif o in ("--verity_signer_args",):
2560 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07002561 elif o in ("-s", "--device_specific"):
2562 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08002563 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08002564 key, value = a.split("=", 1)
2565 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07002566 elif o in ("--logfile",):
2567 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07002568 else:
2569 if extra_option_handler is None or not extra_option_handler(o, a):
2570 assert False, "unknown option \"%s\"" % (o,)
2571
Doug Zongker85448772014-09-09 14:59:20 -07002572 if OPTIONS.search_path:
2573 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
2574 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07002575
2576 return args
2577
2578
Tao Bao4c851b12016-09-19 13:54:38 -07002579def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07002580 """Make a temp file and add it to the list of things to be deleted
2581 when Cleanup() is called. Return the filename."""
2582 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
2583 os.close(fd)
2584 OPTIONS.tempfiles.append(fn)
2585 return fn
2586
2587
Tao Bao1c830bf2017-12-25 10:43:47 -08002588def MakeTempDir(prefix='tmp', suffix=''):
2589 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
2590
2591 Returns:
2592 The absolute pathname of the new directory.
2593 """
2594 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
2595 OPTIONS.tempfiles.append(dir_name)
2596 return dir_name
2597
2598
Doug Zongkereef39442009-04-02 12:14:19 -07002599def Cleanup():
2600 for i in OPTIONS.tempfiles:
2601 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08002602 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07002603 else:
2604 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08002605 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07002606
2607
2608class PasswordManager(object):
2609 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08002610 self.editor = os.getenv("EDITOR")
2611 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002612
2613 def GetPasswords(self, items):
2614 """Get passwords corresponding to each string in 'items',
2615 returning a dict. (The dict may have keys in addition to the
2616 values in 'items'.)
2617
2618 Uses the passwords in $ANDROID_PW_FILE if available, letting the
2619 user edit that file to add more needed passwords. If no editor is
2620 available, or $ANDROID_PW_FILE isn't define, prompts the user
2621 interactively in the ordinary way.
2622 """
2623
2624 current = self.ReadFile()
2625
2626 first = True
2627 while True:
2628 missing = []
2629 for i in items:
2630 if i not in current or not current[i]:
2631 missing.append(i)
2632 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07002633 if not missing:
2634 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07002635
2636 for i in missing:
2637 current[i] = ""
2638
2639 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08002640 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08002641 if sys.version_info[0] >= 3:
2642 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07002643 answer = raw_input("try to edit again? [y]> ").strip()
2644 if answer and answer[0] not in 'yY':
2645 raise RuntimeError("key passwords unavailable")
2646 first = False
2647
2648 current = self.UpdateAndReadFile(current)
2649
Kelvin Zhang0876c412020-06-23 15:06:58 -04002650 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07002651 """Prompt the user to enter a value (password) for each key in
2652 'current' whose value is fales. Returns a new dict with all the
2653 values.
2654 """
2655 result = {}
Tao Bao38884282019-07-10 22:20:56 -07002656 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002657 if v:
2658 result[k] = v
2659 else:
2660 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07002661 result[k] = getpass.getpass(
2662 "Enter password for %s key> " % k).strip()
2663 if result[k]:
2664 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07002665 return result
2666
2667 def UpdateAndReadFile(self, current):
2668 if not self.editor or not self.pwfile:
2669 return self.PromptResult(current)
2670
2671 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07002672 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002673 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
2674 f.write("# (Additional spaces are harmless.)\n\n")
2675
2676 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07002677 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07002678 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07002679 f.write("[[[ %s ]]] %s\n" % (v, k))
2680 if not v and first_line is None:
2681 # position cursor on first line with no password.
2682 first_line = i + 4
2683 f.close()
2684
Tao Bao986ee862018-10-04 15:46:16 -07002685 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07002686
2687 return self.ReadFile()
2688
2689 def ReadFile(self):
2690 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07002691 if self.pwfile is None:
2692 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07002693 try:
2694 f = open(self.pwfile, "r")
2695 for line in f:
2696 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07002697 if not line or line[0] == '#':
2698 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07002699 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
2700 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002701 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002702 else:
2703 result[m.group(2)] = m.group(1)
2704 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002705 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002706 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002707 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002708 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002709
2710
Dan Albert8e0178d2015-01-27 15:53:15 -08002711def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2712 compress_type=None):
Dan Albert8e0178d2015-01-27 15:53:15 -08002713
2714 # http://b/18015246
2715 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2716 # for files larger than 2GiB. We can work around this by adjusting their
2717 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2718 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2719 # it isn't clear to me exactly what circumstances cause this).
2720 # `zipfile.write()` must be used directly to work around this.
2721 #
2722 # This mess can be avoided if we port to python3.
2723 saved_zip64_limit = zipfile.ZIP64_LIMIT
2724 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2725
2726 if compress_type is None:
2727 compress_type = zip_file.compression
2728 if arcname is None:
2729 arcname = filename
2730
2731 saved_stat = os.stat(filename)
2732
2733 try:
2734 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2735 # file to be zipped and reset it when we're done.
2736 os.chmod(filename, perms)
2737
2738 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002739 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2740 # intentional. zip stores datetimes in local time without a time zone
2741 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2742 # in the zip archive.
2743 local_epoch = datetime.datetime.fromtimestamp(0)
2744 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002745 os.utime(filename, (timestamp, timestamp))
2746
2747 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2748 finally:
2749 os.chmod(filename, saved_stat.st_mode)
2750 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2751 zipfile.ZIP64_LIMIT = saved_zip64_limit
2752
2753
Tao Bao58c1b962015-05-20 09:32:18 -07002754def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002755 compress_type=None):
2756 """Wrap zipfile.writestr() function to work around the zip64 limit.
2757
2758 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2759 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2760 when calling crc32(bytes).
2761
2762 But it still works fine to write a shorter string into a large zip file.
2763 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2764 when we know the string won't be too long.
2765 """
2766
2767 saved_zip64_limit = zipfile.ZIP64_LIMIT
2768 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2769
2770 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2771 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002772 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002773 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002774 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002775 else:
Tao Baof3282b42015-04-01 11:21:55 -07002776 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002777 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2778 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2779 # such a case (since
2780 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2781 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2782 # permission bits. We follow the logic in Python 3 to get consistent
2783 # behavior between using the two versions.
2784 if not zinfo.external_attr:
2785 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002786
2787 # If compress_type is given, it overrides the value in zinfo.
2788 if compress_type is not None:
2789 zinfo.compress_type = compress_type
2790
Tao Bao58c1b962015-05-20 09:32:18 -07002791 # If perms is given, it has a priority.
2792 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002793 # If perms doesn't set the file type, mark it as a regular file.
2794 if perms & 0o770000 == 0:
2795 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002796 zinfo.external_attr = perms << 16
2797
Tao Baof3282b42015-04-01 11:21:55 -07002798 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002799 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2800
Dan Albert8b72aef2015-03-23 19:13:21 -07002801 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002802 zipfile.ZIP64_LIMIT = saved_zip64_limit
2803
2804
Tao Bao89d7ab22017-12-14 17:05:33 -08002805def ZipDelete(zip_filename, entries):
2806 """Deletes entries from a ZIP file.
2807
2808 Since deleting entries from a ZIP file is not supported, it shells out to
2809 'zip -d'.
2810
2811 Args:
2812 zip_filename: The name of the ZIP file.
2813 entries: The name of the entry, or the list of names to be deleted.
2814
2815 Raises:
2816 AssertionError: In case of non-zero return from 'zip'.
2817 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002818 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002819 entries = [entries]
Kelvin Zhang70876142022-02-09 16:05:29 -08002820 # If list is empty, nothing to do
2821 if not entries:
2822 return
Tao Bao89d7ab22017-12-14 17:05:33 -08002823 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002824 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002825
2826
Tao Baof3282b42015-04-01 11:21:55 -07002827def ZipClose(zip_file):
2828 # http://b/18015246
2829 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2830 # central directory.
2831 saved_zip64_limit = zipfile.ZIP64_LIMIT
2832 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2833
2834 zip_file.close()
2835
2836 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002837
2838
2839class DeviceSpecificParams(object):
2840 module = None
Kelvin Zhang0876c412020-06-23 15:06:58 -04002841
Doug Zongker05d3dea2009-06-22 11:32:31 -07002842 def __init__(self, **kwargs):
2843 """Keyword arguments to the constructor become attributes of this
2844 object, which is passed to all functions in the device-specific
2845 module."""
Tao Bao38884282019-07-10 22:20:56 -07002846 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002847 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002848 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002849
2850 if self.module is None:
2851 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002852 if not path:
2853 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002854 try:
2855 if os.path.isdir(path):
2856 info = imp.find_module("releasetools", [path])
2857 else:
2858 d, f = os.path.split(path)
2859 b, x = os.path.splitext(f)
2860 if x == ".py":
2861 f = b
2862 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002863 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002864 self.module = imp.load_module("device_specific", *info)
2865 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002866 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002867
2868 def _DoCall(self, function_name, *args, **kwargs):
2869 """Call the named function in the device-specific module, passing
2870 the given args and kwargs. The first argument to the call will be
2871 the DeviceSpecific object itself. If there is no module, or the
2872 module does not define the function, return the value of the
2873 'default' kwarg (which itself defaults to None)."""
2874 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002875 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002876 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2877
2878 def FullOTA_Assertions(self):
2879 """Called after emitting the block of assertions at the top of a
2880 full OTA package. Implementations can add whatever additional
2881 assertions they like."""
2882 return self._DoCall("FullOTA_Assertions")
2883
Doug Zongkere5ff5902012-01-17 10:55:37 -08002884 def FullOTA_InstallBegin(self):
2885 """Called at the start of full OTA installation."""
2886 return self._DoCall("FullOTA_InstallBegin")
2887
Yifan Hong10c530d2018-12-27 17:34:18 -08002888 def FullOTA_GetBlockDifferences(self):
2889 """Called during full OTA installation and verification.
2890 Implementation should return a list of BlockDifference objects describing
2891 the update on each additional partitions.
2892 """
2893 return self._DoCall("FullOTA_GetBlockDifferences")
2894
Doug Zongker05d3dea2009-06-22 11:32:31 -07002895 def FullOTA_InstallEnd(self):
2896 """Called at the end of full OTA installation; typically this is
2897 used to install the image for the device's baseband processor."""
2898 return self._DoCall("FullOTA_InstallEnd")
2899
2900 def IncrementalOTA_Assertions(self):
2901 """Called after emitting the block of assertions at the top of an
2902 incremental OTA package. Implementations can add whatever
2903 additional assertions they like."""
2904 return self._DoCall("IncrementalOTA_Assertions")
2905
Doug Zongkere5ff5902012-01-17 10:55:37 -08002906 def IncrementalOTA_VerifyBegin(self):
2907 """Called at the start of the verification phase of incremental
2908 OTA installation; additional checks can be placed here to abort
2909 the script before any changes are made."""
2910 return self._DoCall("IncrementalOTA_VerifyBegin")
2911
Doug Zongker05d3dea2009-06-22 11:32:31 -07002912 def IncrementalOTA_VerifyEnd(self):
2913 """Called at the end of the verification phase of incremental OTA
2914 installation; additional checks can be placed here to abort the
2915 script before any changes are made."""
2916 return self._DoCall("IncrementalOTA_VerifyEnd")
2917
Doug Zongkere5ff5902012-01-17 10:55:37 -08002918 def IncrementalOTA_InstallBegin(self):
2919 """Called at the start of incremental OTA installation (after
2920 verification is complete)."""
2921 return self._DoCall("IncrementalOTA_InstallBegin")
2922
Yifan Hong10c530d2018-12-27 17:34:18 -08002923 def IncrementalOTA_GetBlockDifferences(self):
2924 """Called during incremental OTA installation and verification.
2925 Implementation should return a list of BlockDifference objects describing
2926 the update on each additional partitions.
2927 """
2928 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2929
Doug Zongker05d3dea2009-06-22 11:32:31 -07002930 def IncrementalOTA_InstallEnd(self):
2931 """Called at the end of incremental OTA installation; typically
2932 this is used to install the image for the device's baseband
2933 processor."""
2934 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002935
Tao Bao9bc6bb22015-11-09 16:58:28 -08002936 def VerifyOTA_Assertions(self):
2937 return self._DoCall("VerifyOTA_Assertions")
2938
Tao Bao76def242017-11-21 09:25:31 -08002939
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002940class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002941 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002942 self.name = name
2943 self.data = data
2944 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002945 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002946 self.sha1 = sha1(data).hexdigest()
2947
2948 @classmethod
2949 def FromLocalFile(cls, name, diskname):
2950 f = open(diskname, "rb")
2951 data = f.read()
2952 f.close()
2953 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002954
2955 def WriteToTemp(self):
2956 t = tempfile.NamedTemporaryFile()
2957 t.write(self.data)
2958 t.flush()
2959 return t
2960
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002961 def WriteToDir(self, d):
2962 with open(os.path.join(d, self.name), "wb") as fp:
2963 fp.write(self.data)
2964
Geremy Condra36bd3652014-02-06 19:45:10 -08002965 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002966 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002967
Tao Bao76def242017-11-21 09:25:31 -08002968
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002969DIFF_PROGRAM_BY_EXT = {
Kelvin Zhang0876c412020-06-23 15:06:58 -04002970 ".gz": "imgdiff",
2971 ".zip": ["imgdiff", "-z"],
2972 ".jar": ["imgdiff", "-z"],
2973 ".apk": ["imgdiff", "-z"],
2974 ".img": "imgdiff",
2975}
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002976
Tao Bao76def242017-11-21 09:25:31 -08002977
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002978class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002979 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002980 self.tf = tf
2981 self.sf = sf
2982 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002983 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002984
2985 def ComputePatch(self):
2986 """Compute the patch (as a string of data) needed to turn sf into
2987 tf. Returns the same tuple as GetPatch()."""
2988
2989 tf = self.tf
2990 sf = self.sf
2991
Doug Zongker24cd2802012-08-14 16:36:15 -07002992 if self.diff_program:
2993 diff_program = self.diff_program
2994 else:
2995 ext = os.path.splitext(tf.name)[1]
2996 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002997
2998 ttemp = tf.WriteToTemp()
2999 stemp = sf.WriteToTemp()
3000
3001 ext = os.path.splitext(tf.name)[1]
3002
3003 try:
3004 ptemp = tempfile.NamedTemporaryFile()
3005 if isinstance(diff_program, list):
3006 cmd = copy.copy(diff_program)
3007 else:
3008 cmd = [diff_program]
3009 cmd.append(stemp.name)
3010 cmd.append(ttemp.name)
3011 cmd.append(ptemp.name)
3012 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07003013 err = []
Kelvin Zhang0876c412020-06-23 15:06:58 -04003014
Doug Zongkerf8340082014-08-05 10:39:37 -07003015 def run():
3016 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07003017 if e:
3018 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07003019 th = threading.Thread(target=run)
3020 th.start()
3021 th.join(timeout=300) # 5 mins
3022 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07003023 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07003024 p.terminate()
3025 th.join(5)
3026 if th.is_alive():
3027 p.kill()
3028 th.join()
3029
Tianjie Xua2a9f992018-01-05 15:15:54 -08003030 if p.returncode != 0:
Yifan Honga4140d22021-08-04 18:09:03 -07003031 logger.warning("Failure running %s:\n%s\n", cmd, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07003032 self.patch = None
3033 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003034 diff = ptemp.read()
3035 finally:
3036 ptemp.close()
3037 stemp.close()
3038 ttemp.close()
3039
3040 self.patch = diff
3041 return self.tf, self.sf, self.patch
3042
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003043 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08003044 """Returns a tuple of (target_file, source_file, patch_data).
3045
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003046 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08003047 computing the patch failed.
3048 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003049 return self.tf, self.sf, self.patch
3050
3051
3052def ComputeDifferences(diffs):
3053 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07003054 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003055
3056 # Do the largest files first, to try and reduce the long-pole effect.
3057 by_size = [(i.tf.size, i) for i in diffs]
3058 by_size.sort(reverse=True)
3059 by_size = [i[1] for i in by_size]
3060
3061 lock = threading.Lock()
3062 diff_iter = iter(by_size) # accessed under lock
3063
3064 def worker():
3065 try:
3066 lock.acquire()
3067 for d in diff_iter:
3068 lock.release()
3069 start = time.time()
3070 d.ComputePatch()
3071 dur = time.time() - start
3072 lock.acquire()
3073
3074 tf, sf, patch = d.GetPatch()
3075 if sf.name == tf.name:
3076 name = tf.name
3077 else:
3078 name = "%s (%s)" % (tf.name, sf.name)
3079 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07003080 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003081 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07003082 logger.info(
3083 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
3084 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003085 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07003086 except Exception:
3087 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07003088 raise
3089
3090 # start worker threads; wait for them all to finish.
3091 threads = [threading.Thread(target=worker)
3092 for i in range(OPTIONS.worker_threads)]
3093 for th in threads:
3094 th.start()
3095 while threads:
3096 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07003097
3098
Dan Albert8b72aef2015-03-23 19:13:21 -07003099class BlockDifference(object):
3100 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07003101 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003102 self.tgt = tgt
3103 self.src = src
3104 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003105 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07003106 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003107
Tao Baodd2a5892015-03-12 12:32:37 -07003108 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08003109 version = max(
3110 int(i) for i in
3111 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08003112 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07003113 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07003114
Tianjie Xu41976c72019-07-03 13:57:01 -07003115 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
3116 version=self.version,
3117 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08003118 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003119 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08003120 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07003121 self.touched_src_ranges = b.touched_src_ranges
3122 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003123
Yifan Hong10c530d2018-12-27 17:34:18 -08003124 # On devices with dynamic partitions, for new partitions,
3125 # src is None but OPTIONS.source_info_dict is not.
3126 if OPTIONS.source_info_dict is None:
3127 is_dynamic_build = OPTIONS.info_dict.get(
3128 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003129 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07003130 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08003131 is_dynamic_build = OPTIONS.source_info_dict.get(
3132 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08003133 is_dynamic_source = partition in shlex.split(
3134 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08003135
Yifan Hongbb2658d2019-01-25 12:30:58 -08003136 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08003137 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
3138
Yifan Hongbb2658d2019-01-25 12:30:58 -08003139 # For dynamic partitions builds, check partition list in both source
3140 # and target build because new partitions may be added, and existing
3141 # partitions may be removed.
3142 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
3143
Yifan Hong10c530d2018-12-27 17:34:18 -08003144 if is_dynamic:
3145 self.device = 'map_partition("%s")' % partition
3146 else:
3147 if OPTIONS.source_info_dict is None:
Yifan Hongbdb32012020-05-07 12:38:53 -07003148 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3149 OPTIONS.info_dict)
Yifan Hong10c530d2018-12-27 17:34:18 -08003150 else:
Yifan Hongbdb32012020-05-07 12:38:53 -07003151 _, device_expr = GetTypeAndDeviceExpr("/" + partition,
3152 OPTIONS.source_info_dict)
3153 self.device = device_expr
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003154
Tao Baod8d14be2016-02-04 14:26:02 -08003155 @property
3156 def required_cache(self):
3157 return self._required_cache
3158
Tao Bao76def242017-11-21 09:25:31 -08003159 def WriteScript(self, script, output_zip, progress=None,
3160 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003161 if not self.src:
3162 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08003163 script.Print("Patching %s image unconditionally..." % (self.partition,))
3164 else:
3165 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003166
Dan Albert8b72aef2015-03-23 19:13:21 -07003167 if progress:
3168 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003169 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08003170
3171 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08003172 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08003173
Tao Bao9bc6bb22015-11-09 16:58:28 -08003174 def WriteStrictVerifyScript(self, script):
3175 """Verify all the blocks in the care_map, including clobbered blocks.
3176
3177 This differs from the WriteVerifyScript() function: a) it prints different
3178 error messages; b) it doesn't allow half-way updated images to pass the
3179 verification."""
3180
3181 partition = self.partition
3182 script.Print("Verifying %s..." % (partition,))
3183 ranges = self.tgt.care_map
3184 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003185 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003186 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
3187 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08003188 self.device, ranges_str,
3189 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08003190 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08003191 script.AppendExtra("")
3192
Tao Baod522bdc2016-04-12 15:53:16 -07003193 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00003194 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07003195
3196 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08003197 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00003198 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07003199
3200 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003201 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08003202 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07003203 ranges = self.touched_src_ranges
3204 expected_sha1 = self.touched_src_sha1
3205 else:
3206 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
3207 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07003208
3209 # No blocks to be checked, skipping.
3210 if not ranges:
3211 return
3212
Tao Bao5ece99d2015-05-12 11:42:31 -07003213 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003214 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003215 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08003216 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
3217 '"%s.patch.dat")) then' % (
3218 self.device, ranges_str, expected_sha1,
3219 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07003220 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07003221 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00003222
Tianjie Xufc3422a2015-12-15 11:53:59 -08003223 if self.version >= 4:
3224
3225 # Bug: 21124327
3226 # When generating incrementals for the system and vendor partitions in
3227 # version 4 or newer, explicitly check the first block (which contains
3228 # the superblock) of the partition to see if it's what we expect. If
3229 # this check fails, give an explicit log message about the partition
3230 # having been remounted R/W (the most likely explanation).
3231 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08003232 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08003233
3234 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07003235 if partition == "system":
3236 code = ErrorCode.SYSTEM_RECOVER_FAILURE
3237 else:
3238 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08003239 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08003240 'ifelse (block_image_recover({device}, "{ranges}") && '
3241 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08003242 'package_extract_file("{partition}.transfer.list"), '
3243 '"{partition}.new.dat", "{partition}.patch.dat"), '
3244 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07003245 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08003246 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07003247 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07003248
Tao Baodd2a5892015-03-12 12:32:37 -07003249 # Abort the OTA update. Note that the incremental OTA cannot be applied
3250 # even if it may match the checksum of the target partition.
3251 # a) If version < 3, operations like move and erase will make changes
3252 # unconditionally and damage the partition.
3253 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08003254 else:
Tianjie Xu209db462016-05-24 17:34:52 -07003255 if partition == "system":
3256 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
3257 else:
3258 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
3259 script.AppendExtra((
3260 'abort("E%d: %s partition has unexpected contents");\n'
3261 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003262
Yifan Hong10c530d2018-12-27 17:34:18 -08003263 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07003264 partition = self.partition
3265 script.Print('Verifying the updated %s image...' % (partition,))
3266 # Unlike pre-install verification, clobbered_blocks should not be ignored.
3267 ranges = self.tgt.care_map
3268 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003269 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003270 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003271 self.device, ranges_str,
3272 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07003273
3274 # Bug: 20881595
3275 # Verify that extended blocks are really zeroed out.
3276 if self.tgt.extended:
3277 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08003278 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08003279 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08003280 self.device, ranges_str,
3281 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07003282 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07003283 if partition == "system":
3284 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
3285 else:
3286 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07003287 script.AppendExtra(
3288 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003289 ' abort("E%d: %s partition has unexpected non-zero contents after '
3290 'OTA update");\n'
3291 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07003292 else:
3293 script.Print('Verified the updated %s image.' % (partition,))
3294
Tianjie Xu209db462016-05-24 17:34:52 -07003295 if partition == "system":
3296 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
3297 else:
3298 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
3299
Tao Bao5fcaaef2015-06-01 13:40:49 -07003300 script.AppendExtra(
3301 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003302 ' abort("E%d: %s partition has unexpected contents after OTA '
3303 'update");\n'
3304 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07003305
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003306 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08003307 ZipWrite(output_zip,
3308 '{}.transfer.list'.format(self.path),
3309 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003310
Tao Bao76def242017-11-21 09:25:31 -08003311 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
3312 # its size. Quailty 9 almost triples the compression time but doesn't
3313 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003314 # zip | brotli(quality 6) | brotli(quality 9)
3315 # compressed_size: 942M | 869M (~8% reduced) | 854M
3316 # compression_time: 75s | 265s | 719s
3317 # decompression_time: 15s | 25s | 25s
3318
3319 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01003320 brotli_cmd = ['brotli', '--quality=6',
3321 '--output={}.new.dat.br'.format(self.path),
3322 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003323 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07003324 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003325
3326 new_data_name = '{}.new.dat.br'.format(self.partition)
3327 ZipWrite(output_zip,
3328 '{}.new.dat.br'.format(self.path),
3329 new_data_name,
3330 compress_type=zipfile.ZIP_STORED)
3331 else:
3332 new_data_name = '{}.new.dat'.format(self.partition)
3333 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
3334
Dan Albert8e0178d2015-01-27 15:53:15 -08003335 ZipWrite(output_zip,
3336 '{}.patch.dat'.format(self.path),
3337 '{}.patch.dat'.format(self.partition),
3338 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003339
Tianjie Xu209db462016-05-24 17:34:52 -07003340 if self.partition == "system":
3341 code = ErrorCode.SYSTEM_UPDATE_FAILURE
3342 else:
3343 code = ErrorCode.VENDOR_UPDATE_FAILURE
3344
Yifan Hong10c530d2018-12-27 17:34:18 -08003345 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08003346 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003347 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07003348 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07003349 device=self.device, partition=self.partition,
3350 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07003351 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003352
Kelvin Zhang0876c412020-06-23 15:06:58 -04003353 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00003354 data = source.ReadRangeSet(ranges)
3355 ctx = sha1()
3356
3357 for p in data:
3358 ctx.update(p)
3359
3360 return ctx.hexdigest()
3361
Kelvin Zhang0876c412020-06-23 15:06:58 -04003362 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
Tao Baoe9b61912015-07-09 17:37:49 -07003363 """Return the hash value for all zero blocks."""
3364 zero_block = '\x00' * 4096
3365 ctx = sha1()
3366 for _ in range(num_blocks):
3367 ctx.update(zero_block)
3368
3369 return ctx.hexdigest()
3370
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07003371
Tianjie Xu41976c72019-07-03 13:57:01 -07003372# Expose these two classes to support vendor-specific scripts
3373DataImage = images.DataImage
3374EmptyImage = images.EmptyImage
3375
Tao Bao76def242017-11-21 09:25:31 -08003376
Doug Zongker96a57e72010-09-26 14:57:41 -07003377# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07003378PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07003379 "ext4": "EMMC",
3380 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07003381 "f2fs": "EMMC",
3382 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07003383}
Doug Zongker96a57e72010-09-26 14:57:41 -07003384
Kelvin Zhang0876c412020-06-23 15:06:58 -04003385
Yifan Hongbdb32012020-05-07 12:38:53 -07003386def GetTypeAndDevice(mount_point, info, check_no_slot=True):
3387 """
3388 Use GetTypeAndDeviceExpr whenever possible. This function is kept for
3389 backwards compatibility. It aborts if the fstab entry has slotselect option
3390 (unless check_no_slot is explicitly set to False).
3391 """
Doug Zongker96a57e72010-09-26 14:57:41 -07003392 fstab = info["fstab"]
3393 if fstab:
Yifan Hongbdb32012020-05-07 12:38:53 -07003394 if check_no_slot:
3395 assert not fstab[mount_point].slotselect, \
Kelvin Zhang0876c412020-06-23 15:06:58 -04003396 "Use GetTypeAndDeviceExpr instead"
Dan Albert8b72aef2015-03-23 19:13:21 -07003397 return (PARTITION_TYPES[fstab[mount_point].fs_type],
3398 fstab[mount_point].device)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003399 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003400
3401
Yifan Hongbdb32012020-05-07 12:38:53 -07003402def GetTypeAndDeviceExpr(mount_point, info):
3403 """
3404 Return the filesystem of the partition, and an edify expression that evaluates
3405 to the device at runtime.
3406 """
3407 fstab = info["fstab"]
3408 if fstab:
3409 p = fstab[mount_point]
3410 device_expr = '"%s"' % fstab[mount_point].device
3411 if p.slotselect:
3412 device_expr = 'add_slot_suffix(%s)' % device_expr
3413 return (PARTITION_TYPES[fstab[mount_point].fs_type], device_expr)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003414 raise KeyError
Yifan Hongbdb32012020-05-07 12:38:53 -07003415
3416
3417def GetEntryForDevice(fstab, device):
3418 """
3419 Returns:
3420 The first entry in fstab whose device is the given value.
3421 """
3422 if not fstab:
3423 return None
3424 for mount_point in fstab:
3425 if fstab[mount_point].device == device:
3426 return fstab[mount_point]
3427 return None
3428
Kelvin Zhang0876c412020-06-23 15:06:58 -04003429
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003430def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08003431 """Parses and converts a PEM-encoded certificate into DER-encoded.
3432
3433 This gives the same result as `openssl x509 -in <filename> -outform DER`.
3434
3435 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08003436 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08003437 """
3438 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003439 save = False
3440 for line in data.split("\n"):
3441 if "--END CERTIFICATE--" in line:
3442 break
3443 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08003444 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003445 if "--BEGIN CERTIFICATE--" in line:
3446 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08003447 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00003448 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08003449
Tao Bao04e1f012018-02-04 12:13:35 -08003450
3451def ExtractPublicKey(cert):
3452 """Extracts the public key (PEM-encoded) from the given certificate file.
3453
3454 Args:
3455 cert: The certificate filename.
3456
3457 Returns:
3458 The public key string.
3459
3460 Raises:
3461 AssertionError: On non-zero return from 'openssl'.
3462 """
3463 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
3464 # While openssl 1.1 writes the key into the given filename followed by '-out',
3465 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
3466 # stdout instead.
3467 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
3468 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
3469 pubkey, stderrdata = proc.communicate()
3470 assert proc.returncode == 0, \
3471 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
3472 return pubkey
3473
3474
Tao Bao1ac886e2019-06-26 11:58:22 -07003475def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07003476 """Extracts the AVB public key from the given public or private key.
3477
3478 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07003479 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07003480 key: The input key file, which should be PEM-encoded public or private key.
3481
3482 Returns:
3483 The path to the extracted AVB public key file.
3484 """
3485 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
3486 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07003487 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07003488 return output
3489
3490
Doug Zongker412c02f2014-02-13 10:58:24 -08003491def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
3492 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08003493 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08003494
Tao Bao6d5d6232018-03-09 17:04:42 -08003495 Most of the space in the boot and recovery images is just the kernel, which is
3496 identical for the two, so the resulting patch should be efficient. Add it to
3497 the output zip, along with a shell script that is run from init.rc on first
3498 boot to actually do the patching and install the new recovery image.
3499
3500 Args:
3501 input_dir: The top-level input directory of the target-files.zip.
3502 output_sink: The callback function that writes the result.
3503 recovery_img: File object for the recovery image.
3504 boot_img: File objects for the boot image.
3505 info_dict: A dict returned by common.LoadInfoDict() on the input
3506 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08003507 """
Doug Zongker412c02f2014-02-13 10:58:24 -08003508 if info_dict is None:
3509 info_dict = OPTIONS.info_dict
3510
Tao Bao6d5d6232018-03-09 17:04:42 -08003511 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003512 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
3513
3514 if board_uses_vendorimage:
3515 # In this case, the output sink is rooted at VENDOR
3516 recovery_img_path = "etc/recovery.img"
3517 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
3518 sh_dir = "bin"
3519 else:
3520 # In this case the output sink is rooted at SYSTEM
3521 recovery_img_path = "vendor/etc/recovery.img"
3522 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
3523 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08003524
Tao Baof2cffbd2015-07-22 12:33:18 -07003525 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003526 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07003527
3528 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08003529 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07003530 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08003531 # With system-root-image, boot and recovery images will have mismatching
3532 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
3533 # to handle such a case.
3534 if system_root_image:
3535 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07003536 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08003537 assert not os.path.exists(path)
3538 else:
3539 diff_program = ["imgdiff"]
3540 if os.path.exists(path):
3541 diff_program.append("-b")
3542 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07003543 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08003544 else:
3545 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07003546
3547 d = Difference(recovery_img, boot_img, diff_program=diff_program)
3548 _, _, patch = d.ComputePatch()
3549 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08003550
Dan Albertebb19aa2015-03-27 19:11:53 -07003551 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07003552 # The following GetTypeAndDevice()s need to use the path in the target
3553 # info_dict instead of source_info_dict.
Yifan Hongbdb32012020-05-07 12:38:53 -07003554 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict,
3555 check_no_slot=False)
3556 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict,
3557 check_no_slot=False)
Dan Albertebb19aa2015-03-27 19:11:53 -07003558 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07003559 return
Doug Zongkerc9253822014-02-04 12:17:58 -08003560
Tao Baof2cffbd2015-07-22 12:33:18 -07003561 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07003562
3563 # Note that we use /vendor to refer to the recovery resources. This will
3564 # work for a separate vendor partition mounted at /vendor or a
3565 # /system/vendor subdirectory on the system partition, for which init will
3566 # create a symlink from /vendor to /system/vendor.
3567
3568 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003569if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
3570 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003571 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07003572 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
3573 log -t recovery "Installing new recovery image: succeeded" || \\
3574 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07003575else
3576 log -t recovery "Recovery image already installed"
3577fi
3578""" % {'type': recovery_type,
3579 'device': recovery_device,
3580 'sha1': recovery_img.sha1,
3581 'size': recovery_img.size}
3582 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07003583 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07003584if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
3585 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07003586 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07003587 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
3588 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
3589 log -t recovery "Installing new recovery image: succeeded" || \\
3590 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08003591else
3592 log -t recovery "Recovery image already installed"
3593fi
Dan Albert8b72aef2015-03-23 19:13:21 -07003594""" % {'boot_size': boot_img.size,
3595 'boot_sha1': boot_img.sha1,
3596 'recovery_size': recovery_img.size,
3597 'recovery_sha1': recovery_img.sha1,
3598 'boot_type': boot_type,
Yifan Hongbdb32012020-05-07 12:38:53 -07003599 'boot_device': boot_device + '$(getprop ro.boot.slot_suffix)',
Tianjiee3c31ea2020-05-19 13:44:26 -07003600 'recovery_type': recovery_type,
3601 'recovery_device': recovery_device + '$(getprop ro.boot.slot_suffix)',
Dan Albert8b72aef2015-03-23 19:13:21 -07003602 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08003603
Bill Peckhame868aec2019-09-17 17:06:47 -07003604 # The install script location moved from /system/etc to /system/bin in the L
3605 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
3606 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07003607
Tao Bao32fcdab2018-10-12 10:30:39 -07003608 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08003609
Tao Baoda30cfa2017-12-01 16:19:46 -08003610 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08003611
3612
3613class DynamicPartitionUpdate(object):
3614 def __init__(self, src_group=None, tgt_group=None, progress=None,
3615 block_difference=None):
3616 self.src_group = src_group
3617 self.tgt_group = tgt_group
3618 self.progress = progress
3619 self.block_difference = block_difference
3620
3621 @property
3622 def src_size(self):
3623 if not self.block_difference:
3624 return 0
3625 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
3626
3627 @property
3628 def tgt_size(self):
3629 if not self.block_difference:
3630 return 0
3631 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
3632
3633 @staticmethod
3634 def _GetSparseImageSize(img):
3635 if not img:
3636 return 0
3637 return img.blocksize * img.total_blocks
3638
3639
3640class DynamicGroupUpdate(object):
3641 def __init__(self, src_size=None, tgt_size=None):
3642 # None: group does not exist. 0: no size limits.
3643 self.src_size = src_size
3644 self.tgt_size = tgt_size
3645
3646
3647class DynamicPartitionsDifference(object):
3648 def __init__(self, info_dict, block_diffs, progress_dict=None,
3649 source_info_dict=None):
3650 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07003651 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003652
3653 self._remove_all_before_apply = False
3654 if source_info_dict is None:
3655 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07003656 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08003657
Tao Baof1113e92019-06-18 12:10:14 -07003658 block_diff_dict = collections.OrderedDict(
3659 [(e.partition, e) for e in block_diffs])
3660
Yifan Hong10c530d2018-12-27 17:34:18 -08003661 assert len(block_diff_dict) == len(block_diffs), \
3662 "Duplicated BlockDifference object for {}".format(
3663 [partition for partition, count in
3664 collections.Counter(e.partition for e in block_diffs).items()
3665 if count > 1])
3666
Yifan Hong79997e52019-01-23 16:56:19 -08003667 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003668
3669 for p, block_diff in block_diff_dict.items():
3670 self._partition_updates[p] = DynamicPartitionUpdate()
3671 self._partition_updates[p].block_difference = block_diff
3672
3673 for p, progress in progress_dict.items():
3674 if p in self._partition_updates:
3675 self._partition_updates[p].progress = progress
3676
3677 tgt_groups = shlex.split(info_dict.get(
3678 "super_partition_groups", "").strip())
3679 src_groups = shlex.split(source_info_dict.get(
3680 "super_partition_groups", "").strip())
3681
3682 for g in tgt_groups:
3683 for p in shlex.split(info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003684 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003685 assert p in self._partition_updates, \
3686 "{} is in target super_{}_partition_list but no BlockDifference " \
3687 "object is provided.".format(p, g)
3688 self._partition_updates[p].tgt_group = g
3689
3690 for g in src_groups:
3691 for p in shlex.split(source_info_dict.get(
Kelvin Zhang563750f2021-04-28 12:46:17 -04003692 "super_%s_partition_list" % g, "").strip()):
Yifan Hong10c530d2018-12-27 17:34:18 -08003693 assert p in self._partition_updates, \
3694 "{} is in source super_{}_partition_list but no BlockDifference " \
3695 "object is provided.".format(p, g)
3696 self._partition_updates[p].src_group = g
3697
Yifan Hong45433e42019-01-18 13:55:25 -08003698 target_dynamic_partitions = set(shlex.split(info_dict.get(
3699 "dynamic_partition_list", "").strip()))
3700 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
3701 if u.tgt_size)
3702 assert block_diffs_with_target == target_dynamic_partitions, \
3703 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
3704 list(target_dynamic_partitions), list(block_diffs_with_target))
3705
3706 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
3707 "dynamic_partition_list", "").strip()))
3708 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
3709 if u.src_size)
3710 assert block_diffs_with_source == source_dynamic_partitions, \
3711 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
3712 list(source_dynamic_partitions), list(block_diffs_with_source))
3713
Yifan Hong10c530d2018-12-27 17:34:18 -08003714 if self._partition_updates:
3715 logger.info("Updating dynamic partitions %s",
3716 self._partition_updates.keys())
3717
Yifan Hong79997e52019-01-23 16:56:19 -08003718 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08003719
3720 for g in tgt_groups:
3721 self._group_updates[g] = DynamicGroupUpdate()
3722 self._group_updates[g].tgt_size = int(info_dict.get(
3723 "super_%s_group_size" % g, "0").strip())
3724
3725 for g in src_groups:
3726 if g not in self._group_updates:
3727 self._group_updates[g] = DynamicGroupUpdate()
3728 self._group_updates[g].src_size = int(source_info_dict.get(
3729 "super_%s_group_size" % g, "0").strip())
3730
3731 self._Compute()
3732
3733 def WriteScript(self, script, output_zip, write_verify_script=False):
3734 script.Comment('--- Start patching dynamic partitions ---')
3735 for p, u in self._partition_updates.items():
3736 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3737 script.Comment('Patch partition %s' % p)
3738 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3739 write_verify_script=False)
3740
3741 op_list_path = MakeTempFile()
3742 with open(op_list_path, 'w') as f:
3743 for line in self._op_list:
3744 f.write('{}\n'.format(line))
3745
3746 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3747
3748 script.Comment('Update dynamic partition metadata')
3749 script.AppendExtra('assert(update_dynamic_partitions('
3750 'package_extract_file("dynamic_partitions_op_list")));')
3751
3752 if write_verify_script:
3753 for p, u in self._partition_updates.items():
3754 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3755 u.block_difference.WritePostInstallVerifyScript(script)
Kelvin Zhang0876c412020-06-23 15:06:58 -04003756 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003757
3758 for p, u in self._partition_updates.items():
3759 if u.tgt_size and u.src_size <= u.tgt_size:
3760 script.Comment('Patch partition %s' % p)
3761 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3762 write_verify_script=write_verify_script)
3763 if write_verify_script:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003764 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
Yifan Hong10c530d2018-12-27 17:34:18 -08003765
3766 script.Comment('--- End patching dynamic partitions ---')
3767
3768 def _Compute(self):
3769 self._op_list = list()
3770
3771 def append(line):
3772 self._op_list.append(line)
3773
3774 def comment(line):
3775 self._op_list.append("# %s" % line)
3776
3777 if self._remove_all_before_apply:
3778 comment('Remove all existing dynamic partitions and groups before '
3779 'applying full OTA')
3780 append('remove_all_groups')
3781
3782 for p, u in self._partition_updates.items():
3783 if u.src_group and not u.tgt_group:
3784 append('remove %s' % p)
3785
3786 for p, u in self._partition_updates.items():
3787 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3788 comment('Move partition %s from %s to default' % (p, u.src_group))
3789 append('move %s default' % p)
3790
3791 for p, u in self._partition_updates.items():
3792 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3793 comment('Shrink partition %s from %d to %d' %
3794 (p, u.src_size, u.tgt_size))
3795 append('resize %s %s' % (p, u.tgt_size))
3796
3797 for g, u in self._group_updates.items():
3798 if u.src_size is not None and u.tgt_size is None:
3799 append('remove_group %s' % g)
3800 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003801 u.src_size > u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003802 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3803 append('resize_group %s %d' % (g, u.tgt_size))
3804
3805 for g, u in self._group_updates.items():
3806 if u.src_size is None and u.tgt_size is not None:
3807 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3808 append('add_group %s %d' % (g, u.tgt_size))
3809 if (u.src_size is not None and u.tgt_size is not None and
Kelvin Zhang563750f2021-04-28 12:46:17 -04003810 u.src_size < u.tgt_size):
Yifan Hong10c530d2018-12-27 17:34:18 -08003811 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3812 append('resize_group %s %d' % (g, u.tgt_size))
3813
3814 for p, u in self._partition_updates.items():
3815 if u.tgt_group and not u.src_group:
3816 comment('Add partition %s to group %s' % (p, u.tgt_group))
3817 append('add %s %s' % (p, u.tgt_group))
3818
3819 for p, u in self._partition_updates.items():
3820 if u.tgt_size and u.src_size < u.tgt_size:
Kelvin Zhang0876c412020-06-23 15:06:58 -04003821 comment('Grow partition %s from %d to %d' %
3822 (p, u.src_size, u.tgt_size))
Yifan Hong10c530d2018-12-27 17:34:18 -08003823 append('resize %s %d' % (p, u.tgt_size))
3824
3825 for p, u in self._partition_updates.items():
3826 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3827 comment('Move partition %s from default to %s' %
3828 (p, u.tgt_group))
3829 append('move %s %s' % (p, u.tgt_group))
Yifan Hongc65a0542021-01-07 14:21:01 -08003830
3831
jiajia tangf3f842b2021-03-17 21:49:44 +08003832def GetBootImageBuildProp(boot_img, ramdisk_format=RamdiskFormat.LZ4):
Yifan Hongc65a0542021-01-07 14:21:01 -08003833 """
Yifan Hong85ac5012021-01-07 14:43:46 -08003834 Get build.prop from ramdisk within the boot image
Yifan Hongc65a0542021-01-07 14:21:01 -08003835
3836 Args:
jiajia tangf3f842b2021-03-17 21:49:44 +08003837 boot_img: the boot image file. Ramdisk must be compressed with lz4 or minigzip format.
Yifan Hongc65a0542021-01-07 14:21:01 -08003838
3839 Return:
Yifan Hong85ac5012021-01-07 14:43:46 -08003840 An extracted file that stores properties in the boot image.
Yifan Hongc65a0542021-01-07 14:21:01 -08003841 """
Yifan Hongc65a0542021-01-07 14:21:01 -08003842 tmp_dir = MakeTempDir('boot_', suffix='.img')
3843 try:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003844 RunAndCheckOutput(['unpack_bootimg', '--boot_img',
3845 boot_img, '--out', tmp_dir])
Yifan Hongc65a0542021-01-07 14:21:01 -08003846 ramdisk = os.path.join(tmp_dir, 'ramdisk')
3847 if not os.path.isfile(ramdisk):
3848 logger.warning('Unable to get boot image timestamp: no ramdisk in boot')
3849 return None
3850 uncompressed_ramdisk = os.path.join(tmp_dir, 'uncompressed_ramdisk')
jiajia tangf3f842b2021-03-17 21:49:44 +08003851 if ramdisk_format == RamdiskFormat.LZ4:
3852 RunAndCheckOutput(['lz4', '-d', ramdisk, uncompressed_ramdisk])
3853 elif ramdisk_format == RamdiskFormat.GZ:
3854 with open(ramdisk, 'rb') as input_stream:
3855 with open(uncompressed_ramdisk, 'wb') as output_stream:
Kelvin Zhang563750f2021-04-28 12:46:17 -04003856 p2 = Run(['minigzip', '-d'], stdin=input_stream.fileno(),
3857 stdout=output_stream.fileno())
jiajia tangf3f842b2021-03-17 21:49:44 +08003858 p2.wait()
3859 else:
3860 logger.error('Only support lz4 or minigzip ramdisk format.')
3861 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003862
3863 abs_uncompressed_ramdisk = os.path.abspath(uncompressed_ramdisk)
3864 extracted_ramdisk = MakeTempDir('extracted_ramdisk')
3865 # Use "toybox cpio" instead of "cpio" because the latter invokes cpio from
3866 # the host environment.
3867 RunAndCheckOutput(['toybox', 'cpio', '-F', abs_uncompressed_ramdisk, '-i'],
Kelvin Zhang563750f2021-04-28 12:46:17 -04003868 cwd=extracted_ramdisk)
Yifan Hongc65a0542021-01-07 14:21:01 -08003869
Yifan Hongc65a0542021-01-07 14:21:01 -08003870 for search_path in RAMDISK_BUILD_PROP_REL_PATHS:
3871 prop_file = os.path.join(extracted_ramdisk, search_path)
3872 if os.path.isfile(prop_file):
Yifan Hong7dc51172021-01-12 11:27:39 -08003873 return prop_file
Kelvin Zhang563750f2021-04-28 12:46:17 -04003874 logger.warning(
3875 'Unable to get boot image timestamp: no %s in ramdisk', search_path)
Yifan Hongc65a0542021-01-07 14:21:01 -08003876
Yifan Hong7dc51172021-01-12 11:27:39 -08003877 return None
Yifan Hongc65a0542021-01-07 14:21:01 -08003878
Yifan Hong85ac5012021-01-07 14:43:46 -08003879 except ExternalError as e:
3880 logger.warning('Unable to get boot image build props: %s', e)
3881 return None
3882
3883
3884def GetBootImageTimestamp(boot_img):
3885 """
3886 Get timestamp from ramdisk within the boot image
3887
3888 Args:
3889 boot_img: the boot image file. Ramdisk must be compressed with lz4 format.
3890
3891 Return:
3892 An integer that corresponds to the timestamp of the boot image, or None
3893 if file has unknown format. Raise exception if an unexpected error has
3894 occurred.
3895 """
3896 prop_file = GetBootImageBuildProp(boot_img)
3897 if not prop_file:
3898 return None
3899
3900 props = PartitionBuildProps.FromBuildPropFile('boot', prop_file)
3901 if props is None:
3902 return None
3903
3904 try:
Yifan Hongc65a0542021-01-07 14:21:01 -08003905 timestamp = props.GetProp('ro.bootimage.build.date.utc')
3906 if timestamp:
3907 return int(timestamp)
Kelvin Zhang563750f2021-04-28 12:46:17 -04003908 logger.warning(
3909 'Unable to get boot image timestamp: ro.bootimage.build.date.utc is undefined')
Yifan Hongc65a0542021-01-07 14:21:01 -08003910 return None
3911
3912 except ExternalError as e:
3913 logger.warning('Unable to get boot image timestamp: %s', e)
3914 return None
Kelvin Zhang27324132021-03-22 15:38:38 -04003915
3916
3917def GetCareMap(which, imgname):
3918 """Returns the care_map string for the given partition.
3919
3920 Args:
3921 which: The partition name, must be listed in PARTITIONS_WITH_CARE_MAP.
3922 imgname: The filename of the image.
3923
3924 Returns:
3925 (which, care_map_ranges): care_map_ranges is the raw string of the care_map
3926 RangeSet; or None.
3927 """
3928 assert which in PARTITIONS_WITH_CARE_MAP
3929
3930 # which + "_image_size" contains the size that the actual filesystem image
3931 # resides in, which is all that needs to be verified. The additional blocks in
3932 # the image file contain verity metadata, by reading which would trigger
3933 # invalid reads.
3934 image_size = OPTIONS.info_dict.get(which + "_image_size")
3935 if not image_size:
3936 return None
3937
David Anderson9e95a022021-08-31 21:32:45 -07003938 disable_sparse = OPTIONS.info_dict.get(which + "_disable_sparse")
3939
Kelvin Zhang27324132021-03-22 15:38:38 -04003940 image_blocks = int(image_size) // 4096 - 1
Kelvin Zhang98ef7bb2022-01-07 14:41:46 -08003941 # It's OK for image_blocks to be 0, because care map ranges are inclusive.
3942 # So 0-0 means "just block 0", which is valid.
3943 assert image_blocks >= 0, "blocks for {} must be non-negative, image size: {}".format(
3944 which, image_size)
Kelvin Zhang27324132021-03-22 15:38:38 -04003945
3946 # For sparse images, we will only check the blocks that are listed in the care
3947 # map, i.e. the ones with meaningful data.
David Anderson9e95a022021-08-31 21:32:45 -07003948 if "extfs_sparse_flag" in OPTIONS.info_dict and not disable_sparse:
Kelvin Zhang27324132021-03-22 15:38:38 -04003949 simg = sparse_img.SparseImage(imgname)
3950 care_map_ranges = simg.care_map.intersect(
3951 rangelib.RangeSet("0-{}".format(image_blocks)))
3952
3953 # Otherwise for non-sparse images, we read all the blocks in the filesystem
3954 # image.
3955 else:
3956 care_map_ranges = rangelib.RangeSet("0-{}".format(image_blocks))
3957
3958 return [which, care_map_ranges.to_string_raw()]
3959
3960
3961def AddCareMapForAbOta(output_file, ab_partitions, image_paths):
3962 """Generates and adds care_map.pb for a/b partition that has care_map.
3963
3964 Args:
3965 output_file: The output zip file (needs to be already open),
3966 or file path to write care_map.pb.
3967 ab_partitions: The list of A/B partitions.
3968 image_paths: A map from the partition name to the image path.
3969 """
3970 if not output_file:
3971 raise ExternalError('Expected output_file for AddCareMapForAbOta')
3972
3973 care_map_list = []
3974 for partition in ab_partitions:
3975 partition = partition.strip()
3976 if partition not in PARTITIONS_WITH_CARE_MAP:
3977 continue
3978
3979 verity_block_device = "{}_verity_block_device".format(partition)
3980 avb_hashtree_enable = "avb_{}_hashtree_enable".format(partition)
3981 if (verity_block_device in OPTIONS.info_dict or
3982 OPTIONS.info_dict.get(avb_hashtree_enable) == "true"):
3983 if partition not in image_paths:
3984 logger.warning('Potential partition with care_map missing from images: %s',
3985 partition)
3986 continue
3987 image_path = image_paths[partition]
3988 if not os.path.exists(image_path):
3989 raise ExternalError('Expected image at path {}'.format(image_path))
3990
3991 care_map = GetCareMap(partition, image_path)
3992 if not care_map:
3993 continue
3994 care_map_list += care_map
3995
3996 # adds fingerprint field to the care_map
3997 # TODO(xunchang) revisit the fingerprint calculation for care_map.
3998 partition_props = OPTIONS.info_dict.get(partition + ".build.prop")
3999 prop_name_list = ["ro.{}.build.fingerprint".format(partition),
4000 "ro.{}.build.thumbprint".format(partition)]
4001
4002 present_props = [x for x in prop_name_list if
4003 partition_props and partition_props.GetProp(x)]
4004 if not present_props:
4005 logger.warning(
4006 "fingerprint is not present for partition %s", partition)
4007 property_id, fingerprint = "unknown", "unknown"
4008 else:
4009 property_id = present_props[0]
4010 fingerprint = partition_props.GetProp(property_id)
4011 care_map_list += [property_id, fingerprint]
4012
4013 if not care_map_list:
4014 return
4015
4016 # Converts the list into proto buf message by calling care_map_generator; and
4017 # writes the result to a temp file.
4018 temp_care_map_text = MakeTempFile(prefix="caremap_text-",
4019 suffix=".txt")
4020 with open(temp_care_map_text, 'w') as text_file:
4021 text_file.write('\n'.join(care_map_list))
4022
4023 temp_care_map = MakeTempFile(prefix="caremap-", suffix=".pb")
4024 care_map_gen_cmd = ["care_map_generator", temp_care_map_text, temp_care_map]
4025 RunAndCheckOutput(care_map_gen_cmd)
4026
4027 if not isinstance(output_file, zipfile.ZipFile):
4028 shutil.copy(temp_care_map, output_file)
4029 return
4030 # output_file is a zip file
4031 care_map_path = "META/care_map.pb"
4032 if care_map_path in output_file.namelist():
4033 # Copy the temp file into the OPTIONS.input_tmp dir and update the
4034 # replace_updated_files_list used by add_img_to_target_files
4035 if not OPTIONS.replace_updated_files_list:
4036 OPTIONS.replace_updated_files_list = []
4037 shutil.copy(temp_care_map, os.path.join(OPTIONS.input_tmp, care_map_path))
4038 OPTIONS.replace_updated_files_list.append(care_map_path)
4039 else:
4040 ZipWrite(output_file, temp_care_map, arcname=care_map_path)
Kelvin Zhang26390482021-11-02 14:31:10 -07004041
4042
4043def IsSparseImage(filepath):
4044 with open(filepath, 'rb') as fp:
4045 # Magic for android sparse image format
4046 # https://source.android.com/devices/bootloader/images
4047 return fp.read(4) == b'\x3A\xFF\x26\xED'