Bob Badour | 2efc476 | 2021-02-03 18:36:27 -0800 | [diff] [blame] | 1 | package { |
| 2 | default_applicable_licenses: ["Android-Apache-2.0"], |
| 3 | } |
| 4 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 5 | microdroid_shell_and_utilities = [ |
| 6 | "reboot", |
| 7 | "sh", |
Victor Hsieh | 1ef3cb7 | 2021-07-21 08:49:10 -0700 | [diff] [blame] | 8 | "strace", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 9 | "toolbox", |
| 10 | "toybox", |
| 11 | ] |
| 12 | |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 13 | microdroid_rootdirs = [ |
| 14 | "dev", |
| 15 | "proc", |
| 16 | "sys", |
| 17 | |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 18 | "system", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 19 | "vendor", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 20 | "debug_ramdisk", |
| 21 | "mnt", |
Inseob Kim | afd9dc0 | 2021-04-23 14:47:44 +0900 | [diff] [blame] | 22 | "data", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 23 | |
| 24 | "apex", |
| 25 | "linkerconfig", |
| 26 | "second_stage_resources", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 27 | ] |
| 28 | |
| 29 | microdroid_symlinks = [ |
| 30 | { |
| 31 | target: "/sys/kernel/debug", |
| 32 | name: "d", |
| 33 | }, |
Inseob Kim | 13ca2c8 | 2021-04-23 09:12:29 +0900 | [diff] [blame] | 34 | { |
| 35 | target: "/system/etc", |
| 36 | name: "etc", |
| 37 | }, |
Inseob Kim | 4e207a1 | 2021-08-04 03:36:47 +0000 | [diff] [blame] | 38 | { |
| 39 | target: "/system/bin", |
| 40 | name: "bin", |
| 41 | }, |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 42 | ] |
| 43 | |
Jiyong Park | 92199ce | 2021-04-16 21:35:58 +0900 | [diff] [blame] | 44 | android_system_image { |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 45 | name: "microdroid", |
| 46 | use_avb: true, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 47 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 48 | avb_algorithm: "SHA256_RSA4096", |
Jiyong Park | d4326f3 | 2021-03-15 23:25:46 +0900 | [diff] [blame] | 49 | partition_name: "system", |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 50 | deps: [ |
| 51 | "init_second_stage", |
Inseob Kim | 23ce158 | 2021-04-06 21:25:57 +0900 | [diff] [blame] | 52 | "microdroid_build_prop", |
Jiyong Park | 4069961 | 2021-05-24 16:55:06 +0900 | [diff] [blame] | 53 | "microdroid_init_rc", |
Jiyong Park | 4d22895 | 2021-10-18 18:28:57 +0900 | [diff] [blame] | 54 | "microdroid_ueventd_rc", |
Jiyong Park | 4069961 | 2021-05-24 16:55:06 +0900 | [diff] [blame] | 55 | "microdroid_launcher", |
Jooyung Han | 7ce2e53 | 2021-06-16 16:52:02 +0900 | [diff] [blame] | 56 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 57 | "libbinder", |
Jooyung Han | 837eef5 | 2021-05-15 11:33:48 +0900 | [diff] [blame] | 58 | "libbinder_ndk", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 59 | "libstdc++", |
| 60 | "logcat", |
| 61 | "logd", |
| 62 | "run-as", |
| 63 | "secilc", |
Jooyung Han | 017916b | 2021-04-20 03:57:19 +0900 | [diff] [blame] | 64 | |
| 65 | // "com.android.adbd" requires these, |
| 66 | "libadbd_auth", |
| 67 | "libadbd_fs", |
| 68 | |
Jooyung Han | 730b7b8 | 2021-05-12 14:09:38 +0900 | [diff] [blame] | 69 | // "com.android.art" requires |
| 70 | "heapprofd_client_api", |
Victor Hsieh | 527b81d | 2021-06-11 10:41:11 -0700 | [diff] [blame] | 71 | "libartpalette-system", |
Jooyung Han | 730b7b8 | 2021-05-12 14:09:38 +0900 | [diff] [blame] | 72 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 73 | "apexd", |
| 74 | "debuggerd", |
Jiyong Park | 1b3bcdc | 2021-09-30 16:40:19 +0900 | [diff] [blame] | 75 | "keystore2_microdroid", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 76 | "linker", |
Inseob Kim | 870e76b | 2021-02-25 17:38:32 +0900 | [diff] [blame] | 77 | "linkerconfig", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 78 | "servicemanager", |
| 79 | "tombstoned", |
| 80 | "cgroups.json", |
Jooyung Han | 1c82073 | 2021-04-15 05:16:23 +0900 | [diff] [blame] | 81 | "public.libraries.android.txt", |
Inseob Kim | d8cf762 | 2021-02-18 19:12:06 +0900 | [diff] [blame] | 82 | |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 83 | // TODO(b/185767624): remove hidl after full keymint support |
| 84 | "hwservicemanager", |
| 85 | |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 86 | "microdroid_plat_sepolicy_and_mapping.sha256", |
| 87 | "microdroid_file_contexts", |
| 88 | "microdroid_hwservice_contexts", |
| 89 | "microdroid_property_contexts", |
| 90 | "microdroid_service_contexts", |
| 91 | "microdroid_keystore2_key_contexts", |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 92 | "microdroid_compatibility_matrix", |
| 93 | "microdroid_manifest", |
Jooyung Han | 8a17ef7 | 2021-08-04 15:39:54 +0900 | [diff] [blame] | 94 | |
| 95 | // TODO(b/195425111) these four should be added automatically |
| 96 | "android.hardware.security.secureclock-V1-ndk", |
| 97 | "android.hardware.security.sharedsecret-V1-ndk", |
| 98 | "libcrypto", |
| 99 | "liblzma", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 100 | ] + microdroid_shell_and_utilities, |
| 101 | multilib: { |
| 102 | common: { |
| 103 | deps: [ |
Jooyung Han | 1c2d758 | 2021-09-08 22:46:42 +0900 | [diff] [blame] | 104 | // non-updatable & mandatory apexes |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 105 | "com.android.runtime", |
Jooyung Han | 1c2d758 | 2021-09-08 22:46:42 +0900 | [diff] [blame] | 106 | |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 107 | "microdroid_plat_sepolicy.cil", |
| 108 | "microdroid_plat_mapping_file", |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 109 | ], |
| 110 | }, |
Jiyong Park | cc5d26b | 2021-05-17 11:27:34 +0900 | [diff] [blame] | 111 | lib64: { |
| 112 | deps: [ |
Jooyung Han | 7ce2e53 | 2021-06-16 16:52:02 +0900 | [diff] [blame] | 113 | "apkdmverity", |
Victor Hsieh | 2445e33 | 2021-06-04 16:44:53 -0700 | [diff] [blame] | 114 | "authfs", |
Victor Hsieh | 8bb67b6 | 2021-08-04 12:10:58 -0700 | [diff] [blame] | 115 | "authfs_service", |
Jiyong Park | 21ce2c5 | 2021-08-28 02:32:17 +0900 | [diff] [blame] | 116 | "microdroid_manager", |
Jiyong Park | cc5d26b | 2021-05-17 11:27:34 +0900 | [diff] [blame] | 117 | "zipfuse", |
Victor Hsieh | 2445e33 | 2021-06-04 16:44:53 -0700 | [diff] [blame] | 118 | |
| 119 | // TODO(b/184872979): Needed by authfs. Remove once the Rust API is created. |
| 120 | "libbinder_rpc_unstable", |
Jiyong Park | cc5d26b | 2021-05-17 11:27:34 +0900 | [diff] [blame] | 121 | ], |
| 122 | }, |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 123 | }, |
Jiyong Park | 92199ce | 2021-04-16 21:35:58 +0900 | [diff] [blame] | 124 | linker_config_src: "linker.config.json", |
Inseob Kim | a313e56 | 2021-02-15 17:04:39 +0900 | [diff] [blame] | 125 | base_dir: "system", |
Inseob Kim | 5ffc082 | 2021-02-09 21:23:36 +0900 | [diff] [blame] | 126 | dirs: microdroid_rootdirs, |
| 127 | symlinks: microdroid_symlinks, |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 128 | file_contexts: ":microdroid_file_contexts.gen", |
Jiyong Park | b552bb6 | 2021-01-25 19:12:47 +0900 | [diff] [blame] | 129 | } |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 130 | |
Inseob Kim | dc2af86 | 2021-02-17 15:51:56 +0900 | [diff] [blame] | 131 | prebuilt_etc { |
| 132 | name: "microdroid_init_rc", |
| 133 | filename: "init.rc", |
| 134 | src: "init.rc", |
| 135 | relative_install_path: "init/hw", |
| 136 | installable: false, // avoid collision with system partition's init.rc |
| 137 | } |
| 138 | |
Jiyong Park | 4d22895 | 2021-10-18 18:28:57 +0900 | [diff] [blame] | 139 | prebuilt_etc { |
| 140 | name: "microdroid_ueventd_rc", |
| 141 | filename: "ueventd.rc", |
| 142 | src: "ueventd.rc", |
| 143 | installable: false, // avoid collision with system partition's ueventd.rc |
| 144 | } |
| 145 | |
Inseob Kim | 23ce158 | 2021-04-06 21:25:57 +0900 | [diff] [blame] | 146 | prebuilt_root { |
| 147 | name: "microdroid_build_prop", |
| 148 | filename: "build.prop", |
| 149 | src: "build.prop", |
Jiyong Park | 68f560c | 2021-05-24 17:38:27 +0900 | [diff] [blame] | 150 | arch: { |
| 151 | x86_64: { |
| 152 | src: ":microdroid_build_prop_gen_x86_64", |
| 153 | }, |
| 154 | arm64: { |
| 155 | src: ":microdroid_build_prop_gen_arm64", |
| 156 | }, |
| 157 | }, |
Inseob Kim | 23ce158 | 2021-04-06 21:25:57 +0900 | [diff] [blame] | 158 | installable: false, |
| 159 | } |
| 160 | |
Jiyong Park | 68f560c | 2021-05-24 17:38:27 +0900 | [diff] [blame] | 161 | genrule { |
| 162 | name: "microdroid_build_prop_gen_x86_64", |
| 163 | srcs: ["build.prop"], |
| 164 | out: ["build.prop.out"], |
| 165 | cmd: "cp $(in) $(out); echo ro.product.cpu.abilist=x86_64 >> $(out)", |
| 166 | } |
| 167 | |
| 168 | genrule { |
| 169 | name: "microdroid_build_prop_gen_arm64", |
| 170 | srcs: ["build.prop"], |
| 171 | out: ["build.prop.out"], |
| 172 | cmd: "cp $(in) $(out); echo ro.product.cpu.abilist=arm64-v8a >> $(out)", |
| 173 | } |
| 174 | |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 175 | android_filesystem { |
| 176 | name: "microdroid_vendor", |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 177 | partition_name: "vendor", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 178 | use_avb: true, |
| 179 | deps: [ |
Andrew Scull | 9ba2657 | 2021-05-27 19:20:46 +0000 | [diff] [blame] | 180 | "android.hardware.security.keymint-service.microdroid", |
Inseob Kim | afd9dc0 | 2021-04-23 14:47:44 +0900 | [diff] [blame] | 181 | "microdroid_fstab", |
Inseob Kim | 28dddd8 | 2021-03-11 17:51:22 +0900 | [diff] [blame] | 182 | "microdroid_precompiled_sepolicy.plat_sepolicy_and_mapping.sha256", |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 183 | "microdroid_vendor_manifest", |
| 184 | "microdroid_vendor_compatibility_matrix", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 185 | ], |
Inseob Kim | abcd10a | 2021-03-25 15:43:07 +0900 | [diff] [blame] | 186 | multilib: { |
| 187 | common: { |
| 188 | deps: [ |
| 189 | "microdroid_vendor_sepolicy.cil", |
| 190 | "microdroid_plat_pub_versioned.cil", |
Inseob Kim | cd06dca | 2021-04-30 00:19:00 +0900 | [diff] [blame] | 191 | "microdroid_plat_sepolicy_vers.txt", |
Inseob Kim | 998c27f | 2021-09-27 13:44:09 +0000 | [diff] [blame] | 192 | "microdroid_precompiled_sepolicy", |
Inseob Kim | abcd10a | 2021-03-25 15:43:07 +0900 | [diff] [blame] | 193 | ], |
| 194 | }, |
| 195 | }, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 196 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 197 | avb_algorithm: "SHA256_RSA4096", |
Inseob Kim | ff43be2 | 2021-06-07 16:56:56 +0900 | [diff] [blame] | 198 | file_contexts: ":microdroid_vendor_file_contexts.gen", |
Jiyong Park | 6e2bc7c | 2021-03-03 14:56:18 +0000 | [diff] [blame] | 199 | } |
| 200 | |
Jiyong Park | c1500e8 | 2021-02-24 01:39:51 +0900 | [diff] [blame] | 201 | logical_partition { |
| 202 | name: "microdroid_super", |
| 203 | sparse: true, |
Inseob Kim | c95b642 | 2021-03-31 16:31:27 +0900 | [diff] [blame] | 204 | size: "auto", |
Inseob Kim | d100475 | 2021-03-30 16:57:27 +0900 | [diff] [blame] | 205 | default_group: [ |
Jiyong Park | c1500e8 | 2021-02-24 01:39:51 +0900 | [diff] [blame] | 206 | { |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 207 | name: "system_a", |
Inseob Kim | d100475 | 2021-03-30 16:57:27 +0900 | [diff] [blame] | 208 | filesystem: ":microdroid", |
| 209 | }, |
| 210 | { |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 211 | name: "vendor_a", |
Inseob Kim | d100475 | 2021-03-30 16:57:27 +0900 | [diff] [blame] | 212 | filesystem: ":microdroid_vendor", |
Jiyong Park | c1500e8 | 2021-02-24 01:39:51 +0900 | [diff] [blame] | 213 | }, |
| 214 | ], |
| 215 | } |
| 216 | |
Jiyong Park | c893717 | 2021-08-30 18:41:52 +0900 | [diff] [blame] | 217 | microdroid_boot_cmdline = [ |
| 218 | "panic=-1", |
| 219 | "bootconfig", |
| 220 | ] |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 221 | |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 222 | bootimg { |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 223 | name: "microdroid_boot-5.10", |
Jiyong Park | dfa3aec | 2021-03-09 20:32:15 +0900 | [diff] [blame] | 224 | // We don't have kernel for arm and x86. But Soong demands one when it builds for |
| 225 | // arm or x86 target. Satisfy that by providing an empty file as the kernel. |
| 226 | kernel_prebuilt: "empty_kernel", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 227 | arch: { |
| 228 | arm64: { |
| 229 | kernel_prebuilt: ":kernel_prebuilts-5.10-arm64", |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 230 | cmdline: microdroid_boot_cmdline, |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 231 | }, |
| 232 | x86_64: { |
| 233 | kernel_prebuilt: ":kernel_prebuilts-5.10-x86_64", |
Jiyong Park | 747d636 | 2021-10-19 17:12:52 +0900 | [diff] [blame] | 234 | cmdline: microdroid_boot_cmdline + [ |
| 235 | // console=none is to work around the x86 specific u-boot behavior which when |
| 236 | // console= option is not found in the kernel commandline console=ttyS0 is |
| 237 | // automatically added. By adding console=none, we can prevent u-boot from doing |
| 238 | // that. Note that console is set to hvc0 by bootconfig if the VM is configured as |
| 239 | // debuggable. |
| 240 | "console=none", |
| 241 | "acpi=noirq", |
| 242 | ], |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 243 | }, |
| 244 | }, |
Jiyong Park | c893717 | 2021-08-30 18:41:52 +0900 | [diff] [blame] | 245 | |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 246 | dtb_prebuilt: "dummy_dtb.img", |
Jiyong Park | 9ecac55 | 2021-03-05 18:51:35 +0900 | [diff] [blame] | 247 | header_version: "4", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 248 | partition_name: "boot", |
Jiyong Park | d4326f3 | 2021-03-15 23:25:46 +0900 | [diff] [blame] | 249 | use_avb: true, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 250 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 251 | } |
| 252 | |
Devin Moore | dc9158e | 2022-01-10 18:51:12 +0000 | [diff] [blame] | 253 | bootimg { |
| 254 | name: "microdroid_init_boot", |
| 255 | ramdisk_module: "microdroid_ramdisk-5.10", |
| 256 | kernel_prebuilt: "empty_kernel", |
| 257 | header_version: "4", |
| 258 | partition_name: "init_boot", |
| 259 | use_avb: true, |
| 260 | avb_private_key: ":microdroid_sign_key", |
| 261 | } |
| 262 | |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 263 | android_filesystem { |
| 264 | name: "microdroid_ramdisk-5.10", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 265 | deps: [ |
Inseob Kim | 9733096 | 2021-06-11 12:59:59 +0900 | [diff] [blame] | 266 | "init_first_stage", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 267 | ], |
| 268 | dirs: [ |
| 269 | "dev", |
| 270 | "proc", |
| 271 | "sys", |
| 272 | |
| 273 | // TODO(jiyong): remove these |
| 274 | "mnt", |
| 275 | "debug_ramdisk", |
| 276 | "second_stage_resources", |
| 277 | ], |
| 278 | type: "compressed_cpio", |
| 279 | } |
| 280 | |
| 281 | bootimg { |
| 282 | name: "microdroid_vendor_boot-5.10", |
| 283 | ramdisk_module: "microdroid_vendor_ramdisk-5.10", |
| 284 | dtb_prebuilt: "dummy_dtb.img", |
Jiyong Park | 9ecac55 | 2021-03-05 18:51:35 +0900 | [diff] [blame] | 285 | header_version: "4", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 286 | vendor_boot: true, |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 287 | arch: { |
| 288 | arm64: { |
| 289 | bootconfig: ":microdroid_bootconfig_arm64_gen", |
| 290 | }, |
| 291 | x86_64: { |
| 292 | bootconfig: ":microdroid_bootconfig_x86_64_gen", |
| 293 | }, |
| 294 | }, |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 295 | partition_name: "vendor_boot", |
Jiyong Park | d4326f3 | 2021-03-15 23:25:46 +0900 | [diff] [blame] | 296 | use_avb: true, |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 297 | avb_private_key: ":microdroid_sign_key", |
Jiyong Park | c8b4003 | 2021-02-18 23:15:41 +0900 | [diff] [blame] | 298 | } |
| 299 | |
| 300 | android_filesystem { |
| 301 | name: "microdroid_vendor_ramdisk-5.10", |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 302 | arch: { |
| 303 | arm64: { |
| 304 | deps: ["virt_device_prebuilts_kernel_modules-5.10-arm64"], |
| 305 | }, |
| 306 | x86_64: { |
| 307 | deps: ["virt_device_prebuilts_kernel_modules-5.10-x86_64"], |
| 308 | }, |
| 309 | }, |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 310 | deps: [ |
| 311 | "microdroid_fstab", |
| 312 | ], |
| 313 | base_dir: "first_stage_ramdisk", |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 314 | type: "compressed_cpio", |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 315 | symlinks: [ |
| 316 | { |
Inseob Kim | 67ab436 | 2021-05-11 16:51:03 +0900 | [diff] [blame] | 317 | target: "etc/fstab.microdroid", |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 318 | name: "first_stage_ramdisk/fstab.microdroid", |
| 319 | }, |
| 320 | { |
| 321 | target: "first_stage_ramdisk/lib", |
| 322 | name: "lib", |
| 323 | }, |
| 324 | ], |
| 325 | } |
| 326 | |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 327 | genrule { |
| 328 | name: "microdroid_bootconfig_arm64_gen", |
| 329 | srcs: [ |
| 330 | "bootconfig.common", |
| 331 | "bootconfig.arm64", |
| 332 | ], |
| 333 | out: ["bootconfig"], |
| 334 | cmd: "cat $(in) > $(out)", |
| 335 | } |
| 336 | |
| 337 | genrule { |
| 338 | name: "microdroid_bootconfig_x86_64_gen", |
| 339 | srcs: [ |
| 340 | "bootconfig.common", |
| 341 | "bootconfig.x86_64", |
| 342 | ], |
| 343 | out: ["bootconfig"], |
| 344 | cmd: "cat $(in) > $(out)", |
| 345 | } |
| 346 | |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 347 | vbmeta { |
| 348 | name: "microdroid_vbmeta_bootconfig", |
| 349 | partition_name: "vbmeta", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 350 | private_key: ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 351 | chained_partitions: [ |
| 352 | { |
| 353 | name: "bootconfig", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 354 | private_key: ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 355 | }, |
| 356 | ], |
| 357 | } |
| 358 | |
| 359 | // See external/avb/avbtool.py |
| 360 | // MAX_VBMETA_SIZE=64KB, MAX_FOOTER_SIZE=4KB |
| 361 | avb_hash_footer_kb = "68" |
| 362 | |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 363 | prebuilt_etc { |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 364 | name: "microdroid_bootconfig_normal", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 365 | src: ":microdroid_bootconfig_normal_gen", |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 366 | filename: "microdroid_bootconfig.normal", |
| 367 | } |
| 368 | |
| 369 | prebuilt_etc { |
| 370 | name: "microdroid_bootconfig_app_debuggable", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 371 | src: ":microdroid_bootconfig_app_debuggable_gen", |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 372 | filename: "microdroid_bootconfig.app_debuggable", |
| 373 | } |
| 374 | |
| 375 | prebuilt_etc { |
| 376 | name: "microdroid_bootconfig_full_debuggable", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 377 | src: ":microdroid_bootconfig_full_debuggable_gen", |
Jiyong Park | c2a49cc | 2021-10-15 00:02:12 +0900 | [diff] [blame] | 378 | filename: "microdroid_bootconfig.full_debuggable", |
Jiyong Park | b810cfe | 2021-07-05 13:05:48 +0900 | [diff] [blame] | 379 | } |
| 380 | |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 381 | // TODO(jiyong): make a new module type that does the avb signing |
| 382 | genrule { |
| 383 | name: "microdroid_bootconfig_normal_gen", |
| 384 | tools: ["avbtool"], |
| 385 | srcs: [ |
| 386 | "bootconfig.normal", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 387 | ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 388 | ], |
| 389 | out: ["microdroid_bootconfig.normal"], |
| 390 | cmd: "cp $(location bootconfig.normal) $(out) && " + |
| 391 | "$(location avbtool) add_hash_footer " + |
| 392 | "--algorithm SHA256_RSA4096 " + |
| 393 | "--partition_name bootconfig " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 394 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 395 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 396 | "--image $(out)", |
| 397 | } |
| 398 | |
| 399 | genrule { |
| 400 | name: "microdroid_bootconfig_app_debuggable_gen", |
| 401 | tools: ["avbtool"], |
| 402 | srcs: [ |
| 403 | "bootconfig.app_debuggable", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 404 | ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 405 | ], |
| 406 | out: ["microdroid_bootconfig.app_debuggable"], |
| 407 | cmd: "cp $(location bootconfig.app_debuggable) $(out) && " + |
| 408 | "$(location avbtool) add_hash_footer " + |
| 409 | "--algorithm SHA256_RSA4096 " + |
| 410 | "--partition_name bootconfig " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 411 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 412 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 413 | "--image $(out)", |
| 414 | } |
| 415 | |
| 416 | genrule { |
| 417 | name: "microdroid_bootconfig_full_debuggable_gen", |
| 418 | tools: ["avbtool"], |
| 419 | srcs: [ |
| 420 | "bootconfig.full_debuggable", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 421 | ":microdroid_sign_key", |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 422 | ], |
| 423 | out: ["microdroid_bootconfig.full_debuggable"], |
| 424 | cmd: "cp $(location bootconfig.full_debuggable) $(out) && " + |
| 425 | "$(location avbtool) add_hash_footer " + |
| 426 | "--algorithm SHA256_RSA4096 " + |
| 427 | "--partition_name bootconfig " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 428 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | acf31b0 | 2021-11-04 20:45:14 +0900 | [diff] [blame] | 429 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 430 | "--image $(out)", |
| 431 | } |
| 432 | |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 433 | prebuilt_etc { |
| 434 | name: "microdroid_fstab", |
Inseob Kim | 67ab436 | 2021-05-11 16:51:03 +0900 | [diff] [blame] | 435 | src: "fstab.microdroid", |
| 436 | filename: "fstab.microdroid", |
Jiyong Park | 3eb11f7 | 2021-02-23 12:53:30 +0900 | [diff] [blame] | 437 | installable: false, |
Jiyong Park | 153d355 | 2021-02-04 08:54:31 +0900 | [diff] [blame] | 438 | } |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 439 | |
| 440 | prebuilt_etc { |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 441 | name: "microdroid_bootloader", |
| 442 | src: ":microdroid_bootloader_gen", |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 443 | arch: { |
| 444 | x86_64: { |
| 445 | // For unknown reason, the signed bootloader doesn't work on x86_64. Until the problem |
| 446 | // is fixed, let's use the unsigned bootloader for the architecture. |
| 447 | // TODO(b/185115783): remove this |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 448 | src: ":microdroid_bootloader_pubkey_replaced", |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 449 | }, |
| 450 | }, |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 451 | filename: "microdroid_bootloader", |
| 452 | } |
| 453 | |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 454 | genrule { |
| 455 | name: "microdroid_bootloader_gen", |
| 456 | tools: ["avbtool"], |
| 457 | srcs: [ |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 458 | ":microdroid_bootloader_pubkey_replaced", |
| 459 | ":microdroid_sign_key", |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 460 | ], |
| 461 | out: ["bootloader-signed"], |
| 462 | // 1. Copy the input to the output becaise avbtool modifies --image in |
| 463 | // place. |
| 464 | // 2. Check if the file is big enough. For arm and x86 we have fake |
| 465 | // bootloader file whose size is 1. It can't pass avbtool. |
| 466 | // 3. Add the hash footer. The partition size is set to (image size + 68KB) |
| 467 | // rounded up to 4KB boundary. |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 468 | cmd: "cp $(location :microdroid_bootloader_pubkey_replaced) $(out) && " + |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 469 | "if [ $$(stat --format=%s $(out)) -gt 4096 ]; then " + |
| 470 | "$(location avbtool) add_hash_footer " + |
| 471 | "--algorithm SHA256_RSA4096 " + |
| 472 | "--partition_name bootloader " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 473 | "--key $(location :microdroid_sign_key) " + |
Jiyong Park | 66aa0fb | 2021-04-08 19:10:44 +0900 | [diff] [blame] | 474 | "--partition_size $$(( " + avb_hash_footer_kb + " * 1024 + ( $$(stat --format=%s $(out)) + 4096 - 1 ) / 4096 * 4096 )) " + |
| 475 | "--image $(out)" + |
| 476 | "; fi", |
| 477 | } |
| 478 | |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 479 | // Replace avbpubkey of prebuilt bootloader with the avbpubkey of the signing key |
| 480 | genrule { |
| 481 | name: "microdroid_bootloader_pubkey_replaced", |
| 482 | tools: ["replace_bytes"], |
| 483 | srcs: [ |
Jooyung Han | 80245f2 | 2021-11-09 17:20:53 +0900 | [diff] [blame] | 484 | ":microdroid_crosvm_bootloader", // input (bootloader) |
| 485 | ":microdroid_crosvm_bootloader.avbpubkey", // old bytes (old pubkey) |
| 486 | ":microdroid_bootloader_avbpubkey_gen", // new bytes (new pubkey) |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 487 | ], |
| 488 | out: ["bootloader-pubkey-replaced"], |
| 489 | // 1. Copy the input to the output (replace_bytes modifies the file in-place) |
| 490 | // 2. Check if the file is big enough. For arm and x86 we have fake |
| 491 | // bootloader file whose size is 1. (replace_bytes fails if key not found) |
| 492 | // 3. Replace embedded pubkey with new one. |
| 493 | cmd: "cp $(location :microdroid_crosvm_bootloader) $(out) && " + |
| 494 | "if [ $$(stat --format=%s $(out)) -gt 4096 ]; then " + |
| 495 | "$(location replace_bytes) $(out) " + |
Jooyung Han | 80245f2 | 2021-11-09 17:20:53 +0900 | [diff] [blame] | 496 | "$(location :microdroid_crosvm_bootloader.avbpubkey) " + |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 497 | "$(location :microdroid_bootloader_avbpubkey_gen)" + |
| 498 | "; fi", |
Jooyung Han | 6351310 | 2021-10-29 14:59:59 +0900 | [diff] [blame] | 499 | } |
| 500 | |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 501 | // Apex keeps a copy of avbpubkey embedded in bootloader so that embedded avbpubkey can be replaced |
| 502 | // while re-signing bootloader. |
| 503 | prebuilt_etc { |
| 504 | name: "microdroid_bootloader.avbpubkey", |
| 505 | src: ":microdroid_bootloader_avbpubkey_gen", |
| 506 | } |
| 507 | |
| 508 | // Generate avbpukey from the signing key |
Jooyung Han | 31b1c2b | 2021-10-27 03:35:42 +0900 | [diff] [blame] | 509 | genrule { |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 510 | name: "microdroid_bootloader_avbpubkey_gen", |
Jooyung Han | 31b1c2b | 2021-10-27 03:35:42 +0900 | [diff] [blame] | 511 | tools: ["avbtool"], |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 512 | srcs: [":microdroid_sign_key"], |
| 513 | out: ["bootloader.pubkey"], |
| 514 | cmd: "$(location avbtool) extract_public_key " + |
| 515 | "--key $(location :microdroid_sign_key) " + |
| 516 | "--output $(out)", |
Jooyung Han | 31b1c2b | 2021-10-27 03:35:42 +0900 | [diff] [blame] | 517 | } |
| 518 | |
| 519 | prebuilt_etc { |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 520 | name: "microdroid_uboot_env", |
| 521 | src: ":microdroid_uboot_env_gen", |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 522 | arch: { |
| 523 | x86_64: { |
| 524 | src: ":microdroid_uboot_env_gen_x86_64", |
| 525 | }, |
| 526 | }, |
Jiyong Park | f677cfa | 2021-02-19 15:44:52 +0900 | [diff] [blame] | 527 | filename: "uboot_env.img", |
| 528 | } |
| 529 | |
| 530 | genrule { |
| 531 | name: "microdroid_uboot_env_gen", |
| 532 | tools: ["mkenvimage_host"], |
| 533 | srcs: ["uboot-env.txt"], |
| 534 | out: ["output.img"], |
| 535 | cmd: "$(location mkenvimage_host) -s 4096 -o $(out) $(in)", |
| 536 | } |
Inseob Kim | 28dddd8 | 2021-03-11 17:51:22 +0900 | [diff] [blame] | 537 | |
Jiyong Park | 89e81cb | 2021-04-13 13:13:55 +0900 | [diff] [blame] | 538 | genrule { |
| 539 | name: "microdroid_uboot_env_gen_x86_64", |
| 540 | tools: ["mkenvimage_host"], |
| 541 | srcs: ["uboot-env-x86_64.txt"], |
| 542 | out: ["output.img"], |
| 543 | cmd: "$(location mkenvimage_host) -s 4096 -o $(out) $(in)", |
| 544 | } |
| 545 | |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 546 | // Note that keys can be different for filesystem images even though we're using the same key |
| 547 | // for microdroid. However, the key signing VBmeta should match with the pubkey embedded in |
| 548 | // bootloader. |
| 549 | filegroup { |
| 550 | name: "microdroid_sign_key", |
| 551 | srcs: [":avb_testkey_rsa4096"], |
| 552 | } |
| 553 | |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 554 | vbmeta { |
| 555 | name: "microdroid_vbmeta", |
| 556 | partition_name: "vbmeta", |
Jooyung Han | d35952e | 2021-11-08 17:53:47 +0900 | [diff] [blame] | 557 | private_key: ":microdroid_sign_key", |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 558 | partitions: [ |
| 559 | "microdroid_vendor", |
| 560 | "microdroid_vendor_boot-5.10", |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 561 | "microdroid", |
Jiyong Park | 52ea083 | 2021-09-01 12:10:18 +0900 | [diff] [blame] | 562 | "microdroid_boot-5.10", |
Devin Moore | dc9158e | 2022-01-10 18:51:12 +0000 | [diff] [blame] | 563 | "microdroid_init_boot", |
Jiyong Park | 80d8da8 | 2021-03-15 23:30:11 +0900 | [diff] [blame] | 564 | ], |
| 565 | } |
Jooyung Han | 25a2acc | 2021-04-05 11:20:10 +0900 | [diff] [blame] | 566 | |
| 567 | prebuilt_etc { |
Jiyong Park | e9b74d0 | 2021-06-21 14:39:12 +0900 | [diff] [blame] | 568 | name: "microdroid.json", |
| 569 | src: "microdroid.json", |
Jiyong Park | 7851501 | 2021-04-13 17:43:10 +0900 | [diff] [blame] | 570 | } |
Jooyung Han | 017916b | 2021-04-20 03:57:19 +0900 | [diff] [blame] | 571 | |
| 572 | prebuilt_etc { |
Inseob Kim | 8f095c9 | 2021-05-26 12:04:54 +0900 | [diff] [blame] | 573 | name: "microdroid_vendor_manifest", |
| 574 | src: "microdroid_vendor_manifest.xml", |
| 575 | filename: "manifest.xml", |
| 576 | relative_install_path: "vintf", |
| 577 | installable: false, |
| 578 | } |
| 579 | |
| 580 | prebuilt_etc { |
| 581 | name: "microdroid_vendor_compatibility_matrix", |
| 582 | src: "microdroid_vendor_compatibility_matrix.xml", |
| 583 | filename: "compatibility_matrix.xml", |
| 584 | relative_install_path: "vintf", |
| 585 | installable: false, |
| 586 | } |
| 587 | |
| 588 | prebuilt_etc { |
| 589 | name: "microdroid_compatibility_matrix", |
| 590 | src: "microdroid_compatibility_matrix.xml", |
| 591 | filename: "compatibility_matrix.current.xml", |
| 592 | relative_install_path: "vintf", |
| 593 | installable: false, |
| 594 | } |
| 595 | |
| 596 | prebuilt_etc { |
| 597 | name: "microdroid_manifest", |
| 598 | src: "microdroid_manifest.xml", |
| 599 | filename: "manifest.xml", |
| 600 | relative_install_path: "vintf", |
| 601 | installable: false, |
| 602 | } |