Bob Badour | 2efc476 | 2021-02-03 18:36:27 -0800 | [diff] [blame] | 1 | package { |
| 2 | default_applicable_licenses: ["Android-Apache-2.0"], |
| 3 | } |
| 4 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 5 | microdroid_shell_and_utilities = [ |
| 6 | "reboot", |
| 7 | "sh", |
Victor Hsieh | 1ef3cb7 | 2021-07-21 08:49:10 -0700 | [diff] [blame] | 8 | "strace", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 9 | "toolbox", |
| 10 | "toybox", |
| 11 | ] |
| 12 | |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 13 | microdroid_rootdirs = [ |
| 14 | "dev", |
| 15 | "proc", |
| 16 | "sys", |
| 17 | |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 18 | "system", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 19 | "vendor", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 20 | "debug_ramdisk", |
| 21 | "mnt", |
Inseob Kim | afd9dc0 | 2021-04-23 14:47:44 +0900 | [diff] [blame] | 22 | "data", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 23 | |
| 24 | "apex", |
| 25 | "linkerconfig", |
| 26 | "second_stage_resources", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 27 | ] |
| 28 | |
| 29 | microdroid_symlinks = [ |
| 30 | { |
| 31 | target: "/sys/kernel/debug", |
| 32 | name: "d", |
| 33 | }, |
Inseob Kim | 13ca2c8 | 2021-04-23 09:12:29 +0900 | [diff] [blame] | 34 | { |
| 35 | target: "/system/etc", |
| 36 | name: "etc", |
| 37 | }, |
Inseob Kim | 4e207a1 | 2021-08-04 03:36:47 +0000 | [diff] [blame] | 38 | { |
| 39 | target: "/system/bin", |
| 40 | name: "bin", |
| 41 | }, |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 42 | ] |
| 43 | |
Jiyong Park | 92199ce | 2021-04-16 21:35:58 +0900 | [diff] [blame] | 44 | android_system_image { |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 45 | name: "microdroid", |
| 46 | use_avb: true, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 47 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 48 | avb_algorithm: "SHA256_RSA4096", |
Jiyong Park | d4326f3 | 2021-03-15 23:25:46 +0900 | [diff] [blame] | 49 | partition_name: "system", |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 50 | deps: [ |
| 51 | "init_second_stage", |
Inseob Kim | 23ce158 | 2021-04-06 21:25:57 +0900 | [diff] [blame] | 52 | "microdroid_build_prop", |
Jiyong Park | 4069961 | 2021-05-24 16:55:06 +0900 | [diff] [blame] | 53 | "microdroid_init_rc", |
Jiyong Park | 4d22895 | 2021-10-18 18:28:57 +0900 | [diff] [blame] | 54 | "microdroid_ueventd_rc", |
Jiyong Park | 4069961 | 2021-05-24 16:55:06 +0900 | [diff] [blame] | 55 | "microdroid_launcher", |
Jooyung Han | 7ce2e53 | 2021-06-16 16:52:02 +0900 | [diff] [blame] | 56 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 57 | "libbinder", |
Jooyung Han | 837eef5 | 2021-05-15 11:33:48 +0900 | [diff] [blame] | 58 | "libbinder_ndk", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 59 | "libstdc++", |
| 60 | "logcat", |
| 61 | "logd", |
| 62 | "run-as", |
| 63 | "secilc", |
Jooyung Han | 017916b | 2021-04-20 03:57:19 +0900 | [diff] [blame] | 64 | |
| 65 | // "com.android.adbd" requires these, |
| 66 | "libadbd_auth", |
| 67 | "libadbd_fs", |
| 68 | |
Jooyung Han | 730b7b8 | 2021-05-12 14:09:38 +0900 | [diff] [blame] | 69 | // "com.android.art" requires |
| 70 | "heapprofd_client_api", |
Victor Hsieh | 527b81d | 2021-06-11 10:41:11 -0700 | [diff] [blame] | 71 | "libartpalette-system", |
Jooyung Han | 730b7b8 | 2021-05-12 14:09:38 +0900 | [diff] [blame] | 72 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 73 | "apexd", |
| 74 | "debuggerd", |
Jiyong Park | c516684 | 2022-01-21 12:54:57 +0900 | [diff] [blame] | 75 | "diced.microdroid", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 76 | "linker", |
Inseob Kim | 870e76b | 2021-02-25 17:38:32 +0900 | [diff] [blame] | 77 | "linkerconfig", |
Jiyong Park | c516684 | 2022-01-21 12:54:57 +0900 | [diff] [blame] | 78 | "servicemanager.microdroid", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 79 | "tombstoned", |
| 80 | "cgroups.json", |
Jooyung Han | 1c82073 | 2021-04-15 05:16:23 +0900 | [diff] [blame] | 81 | "public.libraries.android.txt", |
Inseob Kim | d8cf762 | 2021-02-18 19:12:06 +0900 | [diff] [blame] | 82 | |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 83 | "microdroid_plat_sepolicy_and_mapping.sha256", |
| 84 | "microdroid_file_contexts", |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 85 | "microdroid_property_contexts", |
| 86 | "microdroid_service_contexts", |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 87 | "microdroid_compatibility_matrix", |
| 88 | "microdroid_manifest", |
Jooyung Han | 8a17ef7 | 2021-08-04 15:39:54 +0900 | [diff] [blame] | 89 | |
| 90 | // TODO(b/195425111) these four should be added automatically |
| 91 | "android.hardware.security.secureclock-V1-ndk", |
| 92 | "android.hardware.security.sharedsecret-V1-ndk", |
| 93 | "libcrypto", |
| 94 | "liblzma", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 95 | ] + microdroid_shell_and_utilities, |
| 96 | multilib: { |
| 97 | common: { |
| 98 | deps: [ |
Jooyung Han | 1c2d758 | 2021-09-08 22:46:42 +0900 | [diff] [blame] | 99 | // non-updatable & mandatory apexes |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 100 | "com.android.runtime", |
Jooyung Han | 1c2d758 | 2021-09-08 22:46:42 +0900 | [diff] [blame] | 101 | |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 102 | "microdroid_plat_sepolicy.cil", |
| 103 | "microdroid_plat_mapping_file", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 104 | ], |
| 105 | }, |
Jiyong Park | cc5d26b | 2021-05-17 11:27:34 +0900 | [diff] [blame] | 106 | lib64: { |
| 107 | deps: [ |
Jooyung Han | 7ce2e53 | 2021-06-16 16:52:02 +0900 | [diff] [blame] | 108 | "apkdmverity", |
Victor Hsieh | 2445e33 | 2021-06-04 16:44:53 -0700 | [diff] [blame] | 109 | "authfs", |
Victor Hsieh | 8bb67b6 | 2021-08-04 12:10:58 -0700 | [diff] [blame] | 110 | "authfs_service", |
Jiyong Park | 21ce2c5 | 2021-08-28 02:32:17 +0900 | [diff] [blame] | 111 | "microdroid_manager", |
Jiyong Park | cc5d26b | 2021-05-17 11:27:34 +0900 | [diff] [blame] | 112 | "zipfuse", |
Victor Hsieh | 2445e33 | 2021-06-04 16:44:53 -0700 | [diff] [blame] | 113 | |
| 114 | // TODO(b/184872979): Needed by authfs. Remove once the Rust API is created. |
| 115 | "libbinder_rpc_unstable", |
Jiyong Park | cc5d26b | 2021-05-17 11:27:34 +0900 | [diff] [blame] | 116 | ], |
| 117 | }, |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 118 | }, |
Jiyong Park | 92199ce | 2021-04-16 21:35:58 +0900 | [diff] [blame] | 119 | linker_config_src: "linker.config.json", |
Inseob Kim | a313e56 | 2021-02-15 17:04:39 +0900 | [diff] [blame] | 120 | base_dir: "system", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 121 | dirs: microdroid_rootdirs, |
| 122 | symlinks: microdroid_symlinks, |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 123 | file_contexts: ":microdroid_file_contexts.gen", |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 124 | } |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 125 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 126 | prebuilt_etc { |
| 127 | name: "microdroid_init_rc", |
| 128 | filename: "init.rc", |
| 129 | src: "init.rc", |
| 130 | relative_install_path: "init/hw", |
| 131 | installable: false, // avoid collision with system partition's init.rc |
| 132 | } |
| 133 | |
Jiyong Park | 4d22895 | 2021-10-18 18:28:57 +0900 | [diff] [blame] | 134 | prebuilt_etc { |
| 135 | name: "microdroid_ueventd_rc", |
| 136 | filename: "ueventd.rc", |
| 137 | src: "ueventd.rc", |
| 138 | installable: false, // avoid collision with system partition's ueventd.rc |
| 139 | } |
| 140 | |
Inseob Kim | 23ce158 | 2021-04-06 21:25:57 +0900 | [diff] [blame] | 141 | prebuilt_root { |
| 142 | name: "microdroid_build_prop", |
| 143 | filename: "build.prop", |
| 144 | src: "build.prop", |
Jiyong Park | 68f560c | 2021-05-24 17:38:27 +0900 | [diff] [blame] | 145 | arch: { |
| 146 | x86_64: { |
| 147 | src: ":microdroid_build_prop_gen_x86_64", |
| 148 | }, |
| 149 | arm64: { |
| 150 | src: ":microdroid_build_prop_gen_arm64", |
| 151 | }, |
| 152 | }, |
Inseob Kim | 23ce158 | 2021-04-06 21:25:57 +0900 | [diff] [blame] | 153 | installable: false, |
| 154 | } |
| 155 | |
Jiyong Park | 68f560c | 2021-05-24 17:38:27 +0900 | [diff] [blame] | 156 | genrule { |
| 157 | name: "microdroid_build_prop_gen_x86_64", |
| 158 | srcs: ["build.prop"], |
| 159 | out: ["build.prop.out"], |
| 160 | cmd: "cp $(in) $(out); echo ro.product.cpu.abilist=x86_64 >> $(out)", |
| 161 | } |
| 162 | |
| 163 | genrule { |
| 164 | name: "microdroid_build_prop_gen_arm64", |
| 165 | srcs: ["build.prop"], |
| 166 | out: ["build.prop.out"], |
| 167 | cmd: "cp $(in) $(out); echo ro.product.cpu.abilist=arm64-v8a >> $(out)", |
| 168 | } |
| 169 | |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 170 | android_filesystem { |
| 171 | name: "microdroid_vendor", |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 172 | partition_name: "vendor", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 173 | use_avb: true, |
| 174 | deps: [ |
Andrew Scull | f819594 | 2022-01-13 17:37:52 +0000 | [diff] [blame] | 175 | "android.hardware.security.dice-service.microdroid", |
Inseob Kim | afd9dc0 | 2021-04-23 14:47:44 +0900 | [diff] [blame] | 176 | "microdroid_fstab", |
Inseob Kim | 28dddd8 | 2021-03-11 17:51:22 +0900 | [diff] [blame] | 177 | "microdroid_precompiled_sepolicy.plat_sepolicy_and_mapping.sha256", |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 178 | "microdroid_vendor_manifest", |
| 179 | "microdroid_vendor_compatibility_matrix", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 180 | ], |
Inseob Kim | abcd10a | 2021-03-25 15:43:07 +0900 | [diff] [blame] | 181 | multilib: { |
| 182 | common: { |
| 183 | deps: [ |
| 184 | "microdroid_vendor_sepolicy.cil", |
| 185 | "microdroid_plat_pub_versioned.cil", |
Inseob Kim | cd06dca | 2021-04-30 00:19:00 +0900 | [diff] [blame] | 186 | "microdroid_plat_sepolicy_vers.txt", |
Inseob Kim | 998c27f | 2021-09-27 13:44:09 +0000 | [diff] [blame] | 187 | "microdroid_precompiled_sepolicy", |
Inseob Kim | abcd10a | 2021-03-25 15:43:07 +0900 | [diff] [blame] | 188 | ], |
| 189 | }, |
| 190 | }, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 191 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 192 | avb_algorithm: "SHA256_RSA4096", |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 193 | file_contexts: ":microdroid_vendor_file_contexts.gen", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 194 | } |
| 195 | |
Jiyong Park | c1500e8 | 2021-02-24 01:39:51 +0900 | [diff] [blame] | 196 | logical_partition { |
| 197 | name: "microdroid_super", |
| 198 | sparse: true, |
Inseob Kim | c95b642 | 2021-03-31 16:31:27 +0900 | [diff] [blame] | 199 | size: "auto", |
Inseob Kim | d100475 | 2021-03-30 16:57:27 +0900 | [diff] [blame] | 200 | default_group: [ |
Jiyong Park | c1500e8 | 2021-02-24 01:39:51 +0900 | [diff] [blame] | 201 | { |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 202 | name: "system_a", |
Inseob Kim | d100475 | 2021-03-30 16:57:27 +0900 | [diff] [blame] | 203 | filesystem: ":microdroid", |
| 204 | }, |
| 205 | { |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 206 | name: "vendor_a", |
Inseob Kim | d100475 | 2021-03-30 16:57:27 +0900 | [diff] [blame] | 207 | filesystem: ":microdroid_vendor", |
Jiyong Park | c1500e8 | 2021-02-24 01:39:51 +0900 | [diff] [blame] | 208 | }, |
| 209 | ], |
| 210 | } |
| 211 | |
Jiyong Park | c893717 | 2021-08-30 18:41:52 +0900 | [diff] [blame] | 212 | microdroid_boot_cmdline = [ |
| 213 | "panic=-1", |
| 214 | "bootconfig", |
| 215 | ] |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 216 | |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 217 | bootimg { |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 218 | name: "microdroid_boot-5.10", |
Jiyong Park | dfa3aec | 2021-03-09 20:32:15 +0900 | [diff] [blame] | 219 | // We don't have kernel for arm and x86. But Soong demands one when it builds for |
| 220 | // arm or x86 target. Satisfy that by providing an empty file as the kernel. |
| 221 | kernel_prebuilt: "empty_kernel", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 222 | arch: { |
| 223 | arm64: { |
| 224 | kernel_prebuilt: ":kernel_prebuilts-5.10-arm64", |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 225 | cmdline: microdroid_boot_cmdline, |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 226 | }, |
| 227 | x86_64: { |
| 228 | kernel_prebuilt: ":kernel_prebuilts-5.10-x86_64", |
Jiyong Park | 747d636 | 2021-10-19 17:12:52 +0900 | [diff] [blame] | 229 | cmdline: microdroid_boot_cmdline + [ |
| 230 | // console=none is to work around the x86 specific u-boot behavior which when |
| 231 | // console= option is not found in the kernel commandline console=ttyS0 is |
| 232 | // automatically added. By adding console=none, we can prevent u-boot from doing |
| 233 | // that. Note that console is set to hvc0 by bootconfig if the VM is configured as |
| 234 | // debuggable. |
| 235 | "console=none", |
| 236 | "acpi=noirq", |
| 237 | ], |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 238 | }, |
| 239 | }, |
Jiyong Park | c893717 | 2021-08-30 18:41:52 +0900 | [diff] [blame] | 240 | |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 241 | dtb_prebuilt: "dummy_dtb.img", |
Jiyong Park | 9ecac55 | 2021-03-05 18:51:35 +0900 | [diff] [blame] | 242 | header_version: "4", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 243 | partition_name: "boot", |
Jiyong Park | d4326f3 | 2021-03-15 23:25:46 +0900 | [diff] [blame] | 244 | use_avb: true, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 245 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 246 | } |
| 247 | |
Devin Moore | dc9158e | 2022-01-10 18:51:12 +0000 | [diff] [blame] | 248 | bootimg { |
| 249 | name: "microdroid_init_boot", |
| 250 | ramdisk_module: "microdroid_ramdisk-5.10", |
| 251 | kernel_prebuilt: "empty_kernel", |
| 252 | header_version: "4", |
| 253 | partition_name: "init_boot", |
| 254 | use_avb: true, |
| 255 | avb_private_key: ":microdroid_sign_key", |
| 256 | } |
| 257 | |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 258 | android_filesystem { |
| 259 | name: "microdroid_ramdisk-5.10", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 260 | deps: [ |
Inseob Kim | 9733096 | 2021-06-11 12:59:59 +0900 | [diff] [blame] | 261 | "init_first_stage", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 262 | ], |
| 263 | dirs: [ |
| 264 | "dev", |
| 265 | "proc", |
| 266 | "sys", |
| 267 | |
| 268 | // TODO(jiyong): remove these |
| 269 | "mnt", |
| 270 | "debug_ramdisk", |
| 271 | "second_stage_resources", |
| 272 | ], |
| 273 | type: "compressed_cpio", |
| 274 | } |
| 275 | |
| 276 | bootimg { |
| 277 | name: "microdroid_vendor_boot-5.10", |
| 278 | ramdisk_module: "microdroid_vendor_ramdisk-5.10", |
| 279 | dtb_prebuilt: "dummy_dtb.img", |
Jiyong Park | 9ecac55 | 2021-03-05 18:51:35 +0900 | [diff] [blame] | 280 | header_version: "4", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 281 | vendor_boot: true, |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 282 | arch: { |
| 283 | arm64: { |
| 284 | bootconfig: ":microdroid_bootconfig_arm64_gen", |
| 285 | }, |
| 286 | x86_64: { |
| 287 | bootconfig: ":microdroid_bootconfig_x86_64_gen", |
| 288 | }, |
| 289 | }, |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 290 | partition_name: "vendor_boot", |
Jiyong Park | d4326f3 | 2021-03-15 23:25:46 +0900 | [diff] [blame] | 291 | use_avb: true, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 292 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 293 | } |
| 294 | |
| 295 | android_filesystem { |
| 296 | name: "microdroid_vendor_ramdisk-5.10", |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 297 | arch: { |
| 298 | arm64: { |
| 299 | deps: ["virt_device_prebuilts_kernel_modules-5.10-arm64"], |
| 300 | }, |
| 301 | x86_64: { |
| 302 | deps: ["virt_device_prebuilts_kernel_modules-5.10-x86_64"], |
| 303 | }, |
| 304 | }, |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 305 | deps: [ |
| 306 | "microdroid_fstab", |
| 307 | ], |
| 308 | base_dir: "first_stage_ramdisk", |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 309 | type: "compressed_cpio", |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 310 | symlinks: [ |
| 311 | { |
Inseob Kim | 67ab436 | 2021-05-11 16:51:03 +0900 | [diff] [blame] | 312 | target: "etc/fstab.microdroid", |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 313 | name: "first_stage_ramdisk/fstab.microdroid", |
| 314 | }, |
| 315 | { |
| 316 | target: "first_stage_ramdisk/lib", |
| 317 | name: "lib", |
| 318 | }, |
| 319 | ], |
| 320 | } |
| 321 | |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 322 | genrule { |
| 323 | name: "microdroid_bootconfig_arm64_gen", |
| 324 | srcs: [ |
| 325 | "bootconfig.common", |
| 326 | "bootconfig.arm64", |
| 327 | ], |
| 328 | out: ["bootconfig"], |
| 329 | cmd: "cat $(in) > $(out)", |
| 330 | } |
| 331 | |
| 332 | genrule { |
| 333 | name: "microdroid_bootconfig_x86_64_gen", |
| 334 | srcs: [ |
| 335 | "bootconfig.common", |
| 336 | "bootconfig.x86_64", |
| 337 | ], |
| 338 | out: ["bootconfig"], |
| 339 | cmd: "cat $(in) > $(out)", |
| 340 | } |
| 341 | |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 342 | vbmeta { |
| 343 | name: "microdroid_vbmeta_bootconfig", |
| 344 | partition_name: "vbmeta", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 345 | private_key: ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 346 | chained_partitions: [ |
| 347 | { |
| 348 | name: "bootconfig", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 349 | private_key: ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 350 | }, |
Jiyong Park | 34ad918 | 2022-01-28 21:29:48 +0900 | [diff] [blame] | 351 | { |
| 352 | name: "uboot_env", |
| 353 | private_key: ":microdroid_sign_key", |
| 354 | }, |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 355 | ], |
| 356 | } |
| 357 | |
| 358 | // See external/avb/avbtool.py |
| 359 | // MAX_VBMETA_SIZE=64KB, MAX_FOOTER_SIZE=4KB |
| 360 | avb_hash_footer_kb = "68" |
| 361 | |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 362 | prebuilt_etc { |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 363 | name: "microdroid_bootconfig_normal", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 364 | src: ":microdroid_bootconfig_normal_gen", |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 365 | filename: "microdroid_bootconfig.normal", |
| 366 | } |
| 367 | |
| 368 | prebuilt_etc { |
| 369 | name: "microdroid_bootconfig_app_debuggable", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 370 | src: ":microdroid_bootconfig_app_debuggable_gen", |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 371 | filename: "microdroid_bootconfig.app_debuggable", |
| 372 | } |
| 373 | |
| 374 | prebuilt_etc { |
| 375 | name: "microdroid_bootconfig_full_debuggable", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 376 | src: ":microdroid_bootconfig_full_debuggable_gen", |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 377 | filename: "microdroid_bootconfig.full_debuggable", |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 378 | } |
| 379 | |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 380 | // TODO(jiyong): make a new module type that does the avb signing |
| 381 | genrule { |
| 382 | name: "microdroid_bootconfig_normal_gen", |
| 383 | tools: ["avbtool"], |
| 384 | srcs: [ |
| 385 | "bootconfig.normal", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 386 | ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 387 | ], |
| 388 | out: ["microdroid_bootconfig.normal"], |
| 389 | cmd: "cp $(location bootconfig.normal) $(out) && " + |
| 390 | "$(location avbtool) add_hash_footer " + |
| 391 | "--algorithm SHA256_RSA4096 " + |
| 392 | "--partition_name bootconfig " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 393 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 394 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 395 | "--image $(out)", |
| 396 | } |
| 397 | |
| 398 | genrule { |
| 399 | name: "microdroid_bootconfig_app_debuggable_gen", |
| 400 | tools: ["avbtool"], |
| 401 | srcs: [ |
| 402 | "bootconfig.app_debuggable", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 403 | ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 404 | ], |
| 405 | out: ["microdroid_bootconfig.app_debuggable"], |
| 406 | cmd: "cp $(location bootconfig.app_debuggable) $(out) && " + |
| 407 | "$(location avbtool) add_hash_footer " + |
| 408 | "--algorithm SHA256_RSA4096 " + |
| 409 | "--partition_name bootconfig " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 410 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 411 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 412 | "--image $(out)", |
| 413 | } |
| 414 | |
| 415 | genrule { |
| 416 | name: "microdroid_bootconfig_full_debuggable_gen", |
| 417 | tools: ["avbtool"], |
| 418 | srcs: [ |
| 419 | "bootconfig.full_debuggable", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 420 | ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 421 | ], |
| 422 | out: ["microdroid_bootconfig.full_debuggable"], |
| 423 | cmd: "cp $(location bootconfig.full_debuggable) $(out) && " + |
| 424 | "$(location avbtool) add_hash_footer " + |
| 425 | "--algorithm SHA256_RSA4096 " + |
| 426 | "--partition_name bootconfig " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 427 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 428 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 429 | "--image $(out)", |
| 430 | } |
| 431 | |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 432 | prebuilt_etc { |
| 433 | name: "microdroid_fstab", |
Inseob Kim | 67ab436 | 2021-05-11 16:51:03 +0900 | [diff] [blame] | 434 | src: "fstab.microdroid", |
| 435 | filename: "fstab.microdroid", |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 436 | installable: false, |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 437 | } |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 438 | |
| 439 | prebuilt_etc { |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 440 | name: "microdroid_bootloader", |
| 441 | src: ":microdroid_bootloader_gen", |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 442 | arch: { |
| 443 | x86_64: { |
| 444 | // For unknown reason, the signed bootloader doesn't work on x86_64. Until the problem |
| 445 | // is fixed, let's use the unsigned bootloader for the architecture. |
| 446 | // TODO(b/185115783): remove this |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 447 | src: ":microdroid_bootloader_pubkey_replaced", |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 448 | }, |
| 449 | }, |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 450 | filename: "microdroid_bootloader", |
| 451 | } |
| 452 | |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 453 | genrule { |
| 454 | name: "microdroid_bootloader_gen", |
| 455 | tools: ["avbtool"], |
| 456 | srcs: [ |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 457 | ":microdroid_bootloader_pubkey_replaced", |
| 458 | ":microdroid_sign_key", |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 459 | ], |
| 460 | out: ["bootloader-signed"], |
| 461 | // 1. Copy the input to the output becaise avbtool modifies --image in |
| 462 | // place. |
| 463 | // 2. Check if the file is big enough. For arm and x86 we have fake |
| 464 | // bootloader file whose size is 1. It can't pass avbtool. |
| 465 | // 3. Add the hash footer. The partition size is set to (image size + 68KB) |
| 466 | // rounded up to 4KB boundary. |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 467 | cmd: "cp $(location :microdroid_bootloader_pubkey_replaced) $(out) && " + |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 468 | "if [ $$(stat --format=%s $(out)) -gt 4096 ]; then " + |
| 469 | "$(location avbtool) add_hash_footer " + |
| 470 | "--algorithm SHA256_RSA4096 " + |
| 471 | "--partition_name bootloader " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 472 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 473 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 474 | "--image $(out)" + |
| 475 | "; fi", |
| 476 | } |
| 477 | |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 478 | // Replace avbpubkey of prebuilt bootloader with the avbpubkey of the signing key |
| 479 | genrule { |
| 480 | name: "microdroid_bootloader_pubkey_replaced", |
| 481 | tools: ["replace_bytes"], |
| 482 | srcs: [ |
Jooyung Han | 80245f2 | 2021-11-09 17:20:53 +0900 | [diff] [blame] | 483 | ":microdroid_crosvm_bootloader", // input (bootloader) |
| 484 | ":microdroid_crosvm_bootloader.avbpubkey", // old bytes (old pubkey) |
| 485 | ":microdroid_bootloader_avbpubkey_gen", // new bytes (new pubkey) |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 486 | ], |
| 487 | out: ["bootloader-pubkey-replaced"], |
| 488 | // 1. Copy the input to the output (replace_bytes modifies the file in-place) |
| 489 | // 2. Check if the file is big enough. For arm and x86 we have fake |
| 490 | // bootloader file whose size is 1. (replace_bytes fails if key not found) |
| 491 | // 3. Replace embedded pubkey with new one. |
| 492 | cmd: "cp $(location :microdroid_crosvm_bootloader) $(out) && " + |
| 493 | "if [ $$(stat --format=%s $(out)) -gt 4096 ]; then " + |
| 494 | "$(location replace_bytes) $(out) " + |
Jooyung Han | 80245f2 | 2021-11-09 17:20:53 +0900 | [diff] [blame] | 495 | "$(location :microdroid_crosvm_bootloader.avbpubkey) " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 496 | "$(location :microdroid_bootloader_avbpubkey_gen)" + |
| 497 | "; fi", |
Jooyung Han | 6351310 | 2021-10-29 14:59:59 +0900 | [diff] [blame] | 498 | } |
| 499 | |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 500 | // Apex keeps a copy of avbpubkey embedded in bootloader so that embedded avbpubkey can be replaced |
| 501 | // while re-signing bootloader. |
| 502 | prebuilt_etc { |
| 503 | name: "microdroid_bootloader.avbpubkey", |
| 504 | src: ":microdroid_bootloader_avbpubkey_gen", |
| 505 | } |
| 506 | |
| 507 | // Generate avbpukey from the signing key |
Jooyung Han | 31b1c2b | 2021-10-27 03:35:42 +0900 | [diff] [blame] | 508 | genrule { |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 509 | name: "microdroid_bootloader_avbpubkey_gen", |
Jooyung Han | 31b1c2b | 2021-10-27 03:35:42 +0900 | [diff] [blame] | 510 | tools: ["avbtool"], |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 511 | srcs: [":microdroid_sign_key"], |
| 512 | out: ["bootloader.pubkey"], |
| 513 | cmd: "$(location avbtool) extract_public_key " + |
| 514 | "--key $(location :microdroid_sign_key) " + |
| 515 | "--output $(out)", |
Jooyung Han | 31b1c2b | 2021-10-27 03:35:42 +0900 | [diff] [blame] | 516 | } |
| 517 | |
| 518 | prebuilt_etc { |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 519 | name: "microdroid_uboot_env", |
| 520 | src: ":microdroid_uboot_env_gen", |
| 521 | filename: "uboot_env.img", |
| 522 | } |
| 523 | |
| 524 | genrule { |
| 525 | name: "microdroid_uboot_env_gen", |
Jiyong Park | 34ad918 | 2022-01-28 21:29:48 +0900 | [diff] [blame] | 526 | tools: [ |
| 527 | "mkenvimage_host", |
| 528 | "avbtool", |
| 529 | ], |
| 530 | srcs: [ |
| 531 | "uboot-env.txt", |
| 532 | ":microdroid_sign_key", |
| 533 | ], |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 534 | out: ["output.img"], |
Jiyong Park | 34ad918 | 2022-01-28 21:29:48 +0900 | [diff] [blame] | 535 | cmd: "$(location mkenvimage_host) -s 4096 -o $(out) $(location uboot-env.txt) && " + |
| 536 | "$(location avbtool) add_hash_footer " + |
| 537 | "--algorithm SHA256_RSA4096 " + |
| 538 | "--partition_name uboot_env " + |
| 539 | "--key $(location :microdroid_sign_key) " + |
| 540 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 541 | "--image $(out)", |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 542 | } |
Inseob Kim | 28dddd8 | 2021-03-11 17:51:22 +0900 | [diff] [blame] | 543 | |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 544 | // Note that keys can be different for filesystem images even though we're using the same key |
| 545 | // for microdroid. However, the key signing VBmeta should match with the pubkey embedded in |
| 546 | // bootloader. |
| 547 | filegroup { |
| 548 | name: "microdroid_sign_key", |
| 549 | srcs: [":avb_testkey_rsa4096"], |
| 550 | } |
| 551 | |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 552 | vbmeta { |
| 553 | name: "microdroid_vbmeta", |
| 554 | partition_name: "vbmeta", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 555 | private_key: ":microdroid_sign_key", |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 556 | partitions: [ |
| 557 | "microdroid_vendor", |
| 558 | "microdroid_vendor_boot-5.10", |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 559 | "microdroid", |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 560 | "microdroid_boot-5.10", |
Devin Moore | dc9158e | 2022-01-10 18:51:12 +0000 | [diff] [blame] | 561 | "microdroid_init_boot", |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 562 | ], |
| 563 | } |
Jooyung Han | 25a2acc | 2021-04-05 11:20:10 +0900 | [diff] [blame] | 564 | |
| 565 | prebuilt_etc { |
Jiyong Park | e9b74d0 | 2021-06-21 14:39:12 +0900 | [diff] [blame] | 566 | name: "microdroid.json", |
| 567 | src: "microdroid.json", |
Jiyong Park | 7851501 | 2021-04-13 17:43:10 +0900 | [diff] [blame] | 568 | } |
Jooyung Han | 017916b | 2021-04-20 03:57:19 +0900 | [diff] [blame] | 569 | |
| 570 | prebuilt_etc { |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 571 | name: "microdroid_vendor_manifest", |
| 572 | src: "microdroid_vendor_manifest.xml", |
| 573 | filename: "manifest.xml", |
| 574 | relative_install_path: "vintf", |
| 575 | installable: false, |
| 576 | } |
| 577 | |
| 578 | prebuilt_etc { |
| 579 | name: "microdroid_vendor_compatibility_matrix", |
| 580 | src: "microdroid_vendor_compatibility_matrix.xml", |
| 581 | filename: "compatibility_matrix.xml", |
| 582 | relative_install_path: "vintf", |
| 583 | installable: false, |
| 584 | } |
| 585 | |
| 586 | prebuilt_etc { |
| 587 | name: "microdroid_compatibility_matrix", |
| 588 | src: "microdroid_compatibility_matrix.xml", |
| 589 | filename: "compatibility_matrix.current.xml", |
| 590 | relative_install_path: "vintf", |
| 591 | installable: false, |
| 592 | } |
| 593 | |
| 594 | prebuilt_etc { |
| 595 | name: "microdroid_manifest", |
| 596 | src: "microdroid_manifest.xml", |
| 597 | filename: "manifest.xml", |
| 598 | relative_install_path: "vintf", |
| 599 | installable: false, |
| 600 | } |