blob: 97d40b74918a2c985ca211dc2b2095c6cdd42994 [file] [log] [blame]
Keun-young Park8d01f632017-03-13 11:54:47 -07001/*
2 * Copyright (C) 2017 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
Tom Cherry3f5eaae52017-04-06 16:30:22 -070016
17#include "reboot.h"
18
Keun-young Park8d01f632017-03-13 11:54:47 -070019#include <dirent.h>
20#include <fcntl.h>
Keun-young Park2ba5c812017-03-29 12:54:40 -070021#include <linux/fs.h>
Jaegeuk Kim2aedc822018-11-20 13:27:06 -080022#include <linux/loop.h>
josephjangaaddf282019-04-16 18:46:24 +080023#include <mntent.h>
24#include <semaphore.h>
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +010025#include <stdlib.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070026#include <sys/cdefs.h>
Keun-young Park2ba5c812017-03-29 12:54:40 -070027#include <sys/ioctl.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070028#include <sys/mount.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070029#include <sys/stat.h>
josephjangaaddf282019-04-16 18:46:24 +080030#include <sys/swap.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070031#include <sys/syscall.h>
32#include <sys/types.h>
33#include <sys/wait.h>
34
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +010035#include <chrono>
Keun-young Park8d01f632017-03-13 11:54:47 -070036#include <memory>
Keun-young Park7830d592017-03-27 16:07:02 -070037#include <set>
Keun-young Park8d01f632017-03-13 11:54:47 -070038#include <thread>
39#include <vector>
40
Nikita Ioffe23dbd6d2019-11-14 01:21:24 +000041#include <InitProperties.sysprop.h>
Tom Cherryede0d532017-07-06 14:20:11 -070042#include <android-base/chrono_utils.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070043#include <android-base/file.h>
Tom Cherry3f5eaae52017-04-06 16:30:22 -070044#include <android-base/logging.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070045#include <android-base/macros.h>
Tom Cherryccf23532017-03-28 16:40:41 -070046#include <android-base/properties.h>
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +010047#include <android-base/scopeguard.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070048#include <android-base/strings.h>
Keun-young Park2ba5c812017-03-29 12:54:40 -070049#include <android-base/unique_fd.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070050#include <bootloader_message/bootloader_message.h>
51#include <cutils/android_reboot.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070052#include <fs_mgr.h>
53#include <logwrap/logwrap.h>
Todd Poynorfc827be2017-04-13 15:17:24 -070054#include <private/android_filesystem_config.h>
Tom Cherry0c8d6d22017-08-10 12:22:44 -070055#include <selinux/selinux.h>
Keun-young Park8d01f632017-03-13 11:54:47 -070056
Nikita Ioffeba6968e2019-10-07 16:26:33 +010057#include "action.h"
Tom Cherry7fd3bc22018-02-13 15:36:14 -080058#include "action_manager.h"
Nikita Ioffeba6968e2019-10-07 16:26:33 +010059#include "builtin_arguments.h"
Wei Wangeeab4912017-06-27 22:08:45 -070060#include "init.h"
Nikita Ioffeab91ee92019-11-06 21:40:31 +000061#include "mount_namespace.h"
Tom Cherry44aceed2018-08-03 13:36:18 -070062#include "reboot_utils.h"
Keun-young Park8d01f632017-03-13 11:54:47 -070063#include "service.h"
Tom Cherry2aeb1ad2019-06-26 10:46:20 -070064#include "service_list.h"
Luis Hector Chavez9f97f472017-09-06 13:43:57 -070065#include "sigchld_handler.h"
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +010066#include "util.h"
Keun-young Park8d01f632017-03-13 11:54:47 -070067
josephjangaaddf282019-04-16 18:46:24 +080068#define PROC_SYSRQ "/proc/sysrq-trigger"
69
Tom Cherry2436e6b2019-09-19 11:16:19 -070070using namespace std::literals;
71
Nikita Ioffec0df1872019-11-13 21:47:06 +000072using android::base::boot_clock;
Tom Cherry4f4cacc2019-01-08 10:39:00 -080073using android::base::GetBoolProperty;
Nikita Ioffec0df1872019-11-13 21:47:06 +000074using android::base::SetProperty;
Mark Salyzyn62909822017-10-09 09:27:16 -070075using android::base::Split;
Tom Cherryede0d532017-07-06 14:20:11 -070076using android::base::Timer;
Jaegeuk Kim2aedc822018-11-20 13:27:06 -080077using android::base::unique_fd;
Nikita Ioffec0df1872019-11-13 21:47:06 +000078using android::base::WaitForProperty;
josephjangaaddf282019-04-16 18:46:24 +080079using android::base::WriteStringToFile;
Keun-young Park8d01f632017-03-13 11:54:47 -070080
Tom Cherry81f5d3e2017-06-22 12:53:17 -070081namespace android {
82namespace init {
83
Nikita Ioffeba6968e2019-10-07 16:26:33 +010084static bool shutting_down = false;
85
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +010086static const std::set<std::string> kDebuggingServices{"tombstoned", "logd", "adbd", "console"};
87
88static std::vector<Service*> GetDebuggingServices(bool only_post_data) {
89 std::vector<Service*> ret;
90 ret.reserve(kDebuggingServices.size());
91 for (const auto& s : ServiceList::GetInstance()) {
92 if (kDebuggingServices.count(s->name()) && (!only_post_data || s->is_post_data())) {
93 ret.push_back(s.get());
94 }
95 }
96 return ret;
97}
98
Keun-young Park8d01f632017-03-13 11:54:47 -070099// represents umount status during reboot / shutdown.
100enum UmountStat {
101 /* umount succeeded. */
102 UMOUNT_STAT_SUCCESS = 0,
103 /* umount was not run. */
104 UMOUNT_STAT_SKIPPED = 1,
105 /* umount failed with timeout. */
106 UMOUNT_STAT_TIMEOUT = 2,
107 /* could not run due to error */
108 UMOUNT_STAT_ERROR = 3,
109 /* not used by init but reserved for other part to use this to represent the
110 the state where umount status before reboot is not found / available. */
111 UMOUNT_STAT_NOT_AVAILABLE = 4,
112};
113
114// Utility for struct mntent
115class MountEntry {
116 public:
Keun-young Park2ba5c812017-03-29 12:54:40 -0700117 explicit MountEntry(const mntent& entry)
Keun-young Park8d01f632017-03-13 11:54:47 -0700118 : mnt_fsname_(entry.mnt_fsname),
119 mnt_dir_(entry.mnt_dir),
120 mnt_type_(entry.mnt_type),
Keun-young Park2ba5c812017-03-29 12:54:40 -0700121 mnt_opts_(entry.mnt_opts) {}
Keun-young Park8d01f632017-03-13 11:54:47 -0700122
Jaegeuk Kim0f04f722017-09-25 10:55:39 -0700123 bool Umount(bool force) {
Tom Cherryc9fec9d2018-02-15 14:26:58 -0800124 LOG(INFO) << "Unmounting " << mnt_fsname_ << ":" << mnt_dir_ << " opts " << mnt_opts_;
Jaegeuk Kim0f04f722017-09-25 10:55:39 -0700125 int r = umount2(mnt_dir_.c_str(), force ? MNT_FORCE : 0);
Keun-young Park2ba5c812017-03-29 12:54:40 -0700126 if (r == 0) {
Tom Cherryc9fec9d2018-02-15 14:26:58 -0800127 LOG(INFO) << "Umounted " << mnt_fsname_ << ":" << mnt_dir_ << " opts " << mnt_opts_;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700128 return true;
129 } else {
Tom Cherryc9fec9d2018-02-15 14:26:58 -0800130 PLOG(WARNING) << "Cannot umount " << mnt_fsname_ << ":" << mnt_dir_ << " opts "
Keun-young Park2ba5c812017-03-29 12:54:40 -0700131 << mnt_opts_;
132 return false;
133 }
134 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700135
Keun-young Park2ba5c812017-03-29 12:54:40 -0700136 void DoFsck() {
137 int st;
138 if (IsF2Fs()) {
139 const char* f2fs_argv[] = {
Randall Huangdf2faa42019-01-15 15:00:56 +0800140 "/system/bin/fsck.f2fs",
141 "-a",
142 mnt_fsname_.c_str(),
Keun-young Park2ba5c812017-03-29 12:54:40 -0700143 };
Tom Cherry3a803eb2019-09-25 16:23:50 -0700144 logwrap_fork_execvp(arraysize(f2fs_argv), f2fs_argv, &st, false, LOG_KLOG, true,
145 nullptr);
Keun-young Park2ba5c812017-03-29 12:54:40 -0700146 } else if (IsExt4()) {
147 const char* ext4_argv[] = {
Randall Huangdf2faa42019-01-15 15:00:56 +0800148 "/system/bin/e2fsck",
149 "-y",
150 mnt_fsname_.c_str(),
Keun-young Park2ba5c812017-03-29 12:54:40 -0700151 };
Tom Cherry3a803eb2019-09-25 16:23:50 -0700152 logwrap_fork_execvp(arraysize(ext4_argv), ext4_argv, &st, false, LOG_KLOG, true,
153 nullptr);
Keun-young Park2ba5c812017-03-29 12:54:40 -0700154 }
155 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700156
157 static bool IsBlockDevice(const struct mntent& mntent) {
158 return android::base::StartsWith(mntent.mnt_fsname, "/dev/block");
159 }
160
161 static bool IsEmulatedDevice(const struct mntent& mntent) {
Keun-young Park2ba5c812017-03-29 12:54:40 -0700162 return android::base::StartsWith(mntent.mnt_fsname, "/data/");
Keun-young Park8d01f632017-03-13 11:54:47 -0700163 }
164
165 private:
Keun-young Park2ba5c812017-03-29 12:54:40 -0700166 bool IsF2Fs() const { return mnt_type_ == "f2fs"; }
167
168 bool IsExt4() const { return mnt_type_ == "ext4"; }
169
Keun-young Park8d01f632017-03-13 11:54:47 -0700170 std::string mnt_fsname_;
171 std::string mnt_dir_;
172 std::string mnt_type_;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700173 std::string mnt_opts_;
Keun-young Park8d01f632017-03-13 11:54:47 -0700174};
175
176// Turn off backlight while we are performing power down cleanup activities.
177static void TurnOffBacklight() {
Steven Morelandd5eccfd2018-01-19 13:01:53 -0800178 Service* service = ServiceList::GetInstance().FindService("blank_screen");
179 if (service == nullptr) {
180 LOG(WARNING) << "cannot find blank_screen in TurnOffBacklight";
Keun-young Park8d01f632017-03-13 11:54:47 -0700181 return;
182 }
Bernie Innocenticecebbb2020-02-06 03:49:33 +0900183 if (auto result = service->Start(); !result.ok()) {
Tom Cherryd9872642018-10-11 10:38:05 -0700184 LOG(WARNING) << "Could not start blank_screen service: " << result.error();
185 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700186}
187
Nikita Ioffebee7b8c2019-12-02 11:51:39 +0000188static Result<void> CallVdc(const std::string& system, const std::string& cmd) {
189 const char* vdc_argv[] = {"/system/bin/vdc", system.c_str(), cmd.c_str()};
Keun-young Park8d01f632017-03-13 11:54:47 -0700190 int status;
Nikita Ioffe12a36072019-10-23 20:11:32 +0100191 if (logwrap_fork_execvp(arraysize(vdc_argv), vdc_argv, &status, false, LOG_KLOG, true,
192 nullptr) != 0) {
Nikita Ioffebee7b8c2019-12-02 11:51:39 +0000193 return ErrnoError() << "Failed to call '/system/bin/vdc " << system << " " << cmd << "'";
Nikita Ioffe12a36072019-10-23 20:11:32 +0100194 }
195 if (WIFEXITED(status) && WEXITSTATUS(status) == 0) {
196 return {};
197 }
Nikita Ioffebee7b8c2019-12-02 11:51:39 +0000198 return Error() << "'/system/bin/vdc " << system << " " << cmd << "' failed : " << status;
Keun-young Park8d01f632017-03-13 11:54:47 -0700199}
200
201static void LogShutdownTime(UmountStat stat, Timer* t) {
Tom Cherryede0d532017-07-06 14:20:11 -0700202 LOG(WARNING) << "powerctl_shutdown_time_ms:" << std::to_string(t->duration().count()) << ":"
203 << stat;
Keun-young Park8d01f632017-03-13 11:54:47 -0700204}
205
Tom Cherry2436e6b2019-09-19 11:16:19 -0700206static bool IsDataMounted() {
207 std::unique_ptr<std::FILE, int (*)(std::FILE*)> fp(setmntent("/proc/mounts", "re"), endmntent);
208 if (fp == nullptr) {
209 PLOG(ERROR) << "Failed to open /proc/mounts";
210 return false;
211 }
212 mntent* mentry;
213 while ((mentry = getmntent(fp.get())) != nullptr) {
214 if (mentry->mnt_dir == "/data"s) {
215 return true;
216 }
217 }
218 return false;
219}
220
221// Find all read+write block devices and emulated devices in /proc/mounts and add them to
222// the correpsponding list.
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100223static bool FindPartitionsToUmount(std::vector<MountEntry>* block_dev_partitions,
224 std::vector<MountEntry>* emulated_partitions, bool dump) {
Tom Cherryf274e782018-10-03 13:13:41 -0700225 std::unique_ptr<std::FILE, int (*)(std::FILE*)> fp(setmntent("/proc/mounts", "re"), endmntent);
Keun-young Park8d01f632017-03-13 11:54:47 -0700226 if (fp == nullptr) {
227 PLOG(ERROR) << "Failed to open /proc/mounts";
228 return false;
229 }
230 mntent* mentry;
231 while ((mentry = getmntent(fp.get())) != nullptr) {
Keun-young Park2ba5c812017-03-29 12:54:40 -0700232 if (dump) {
233 LOG(INFO) << "mount entry " << mentry->mnt_fsname << ":" << mentry->mnt_dir << " opts "
234 << mentry->mnt_opts << " type " << mentry->mnt_type;
235 } else if (MountEntry::IsBlockDevice(*mentry) && hasmntopt(mentry, "rw")) {
Keun-young Park6e12b382017-07-17 12:20:33 -0700236 std::string mount_dir(mentry->mnt_dir);
237 // These are R/O partitions changed to R/W after adb remount.
238 // Do not umount them as shutdown critical services may rely on them.
Wei Wanga01c27e2017-07-25 10:52:08 -0700239 if (mount_dir != "/" && mount_dir != "/system" && mount_dir != "/vendor" &&
240 mount_dir != "/oem") {
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100241 block_dev_partitions->emplace(block_dev_partitions->begin(), *mentry);
Keun-young Park6e12b382017-07-17 12:20:33 -0700242 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700243 } else if (MountEntry::IsEmulatedDevice(*mentry)) {
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100244 emulated_partitions->emplace(emulated_partitions->begin(), *mentry);
Keun-young Park8d01f632017-03-13 11:54:47 -0700245 }
246 }
247 return true;
248}
249
Jonglin Lee28a2c922019-01-15 16:38:44 -0800250static void DumpUmountDebuggingInfo() {
Keun-young Park2ba5c812017-03-29 12:54:40 -0700251 int status;
252 if (!security_getenforce()) {
253 LOG(INFO) << "Run lsof";
254 const char* lsof_argv[] = {"/system/bin/lsof"};
Tom Cherry3a803eb2019-09-25 16:23:50 -0700255 logwrap_fork_execvp(arraysize(lsof_argv), lsof_argv, &status, false, LOG_KLOG, true,
256 nullptr);
Keun-young Park8d01f632017-03-13 11:54:47 -0700257 }
Keun-young Park2ba5c812017-03-29 12:54:40 -0700258 FindPartitionsToUmount(nullptr, nullptr, true);
Jonglin Lee28a2c922019-01-15 16:38:44 -0800259 // dump current CPU stack traces and uninterruptible tasks
josephjangaaddf282019-04-16 18:46:24 +0800260 WriteStringToFile("l", PROC_SYSRQ);
261 WriteStringToFile("w", PROC_SYSRQ);
Keun-young Park2ba5c812017-03-29 12:54:40 -0700262}
263
Tom Cherryede0d532017-07-06 14:20:11 -0700264static UmountStat UmountPartitions(std::chrono::milliseconds timeout) {
Keun-young Park2ba5c812017-03-29 12:54:40 -0700265 Timer t;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700266 /* data partition needs all pending writes to be completed and all emulated partitions
267 * umounted.If the current waiting is not good enough, give
268 * up and leave it to e2fsck after reboot to fix it.
269 */
270 while (true) {
271 std::vector<MountEntry> block_devices;
272 std::vector<MountEntry> emulated_devices;
273 if (!FindPartitionsToUmount(&block_devices, &emulated_devices, false)) {
274 return UMOUNT_STAT_ERROR;
275 }
276 if (block_devices.size() == 0) {
Wei Wang8c00e422017-08-16 14:01:46 -0700277 return UMOUNT_STAT_SUCCESS;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700278 }
Wei Wang8c00e422017-08-16 14:01:46 -0700279 bool unmount_done = true;
280 if (emulated_devices.size() > 0) {
Wei Wang25dc30f2017-10-23 15:32:03 -0700281 for (auto& entry : emulated_devices) {
282 if (!entry.Umount(false)) unmount_done = false;
283 }
Wei Wang8c00e422017-08-16 14:01:46 -0700284 if (unmount_done) {
285 sync();
286 }
Keun-young Park2ba5c812017-03-29 12:54:40 -0700287 }
Wei Wang25dc30f2017-10-23 15:32:03 -0700288 for (auto& entry : block_devices) {
289 if (!entry.Umount(timeout == 0ms)) unmount_done = false;
290 }
Wei Wang8c00e422017-08-16 14:01:46 -0700291 if (unmount_done) {
292 return UMOUNT_STAT_SUCCESS;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700293 }
Wei Wang8c00e422017-08-16 14:01:46 -0700294 if ((timeout < t.duration())) { // try umount at least once
295 return UMOUNT_STAT_TIMEOUT;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700296 }
Keun-young Park2ba5c812017-03-29 12:54:40 -0700297 std::this_thread::sleep_for(100ms);
298 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700299}
300
josephjangaaddf282019-04-16 18:46:24 +0800301static void KillAllProcesses() {
302 WriteStringToFile("i", PROC_SYSRQ);
303}
304
305// Create reboot/shutdwon monitor thread
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100306void RebootMonitorThread(unsigned int cmd, const std::string& reboot_target,
307 sem_t* reboot_semaphore, std::chrono::milliseconds shutdown_timeout,
308 bool* reboot_monitor_run) {
josephjangaaddf282019-04-16 18:46:24 +0800309 unsigned int remaining_shutdown_time = 0;
310
311 // 30 seconds more than the timeout passed to the thread as there is a final Umount pass
312 // after the timeout is reached.
313 constexpr unsigned int shutdown_watchdog_timeout_default = 30;
314 auto shutdown_watchdog_timeout = android::base::GetUintProperty(
315 "ro.build.shutdown.watchdog.timeout", shutdown_watchdog_timeout_default);
316 remaining_shutdown_time = shutdown_watchdog_timeout + shutdown_timeout.count() / 1000;
317
318 while (*reboot_monitor_run == true) {
319 if (TEMP_FAILURE_RETRY(sem_wait(reboot_semaphore)) == -1) {
320 LOG(ERROR) << "sem_wait failed and exit RebootMonitorThread()";
321 return;
322 }
323
324 timespec shutdown_timeout_timespec;
325 if (clock_gettime(CLOCK_MONOTONIC, &shutdown_timeout_timespec) == -1) {
326 LOG(ERROR) << "clock_gettime() fail! exit RebootMonitorThread()";
327 return;
328 }
329
330 // If there are some remaining shutdown time left from previous round, we use
331 // remaining time here.
332 shutdown_timeout_timespec.tv_sec += remaining_shutdown_time;
333
334 LOG(INFO) << "shutdown_timeout_timespec.tv_sec: " << shutdown_timeout_timespec.tv_sec;
335
336 int sem_return = 0;
337 while ((sem_return = sem_timedwait_monotonic_np(reboot_semaphore,
338 &shutdown_timeout_timespec)) == -1 &&
339 errno == EINTR) {
340 }
341
342 if (sem_return == -1) {
343 LOG(ERROR) << "Reboot thread timed out";
344
345 if (android::base::GetBoolProperty("ro.debuggable", false) == true) {
Tom Cherry2436e6b2019-09-19 11:16:19 -0700346 if (false) {
347 // SEPolicy will block debuggerd from running and this is intentional.
348 // But these lines are left to be enabled during debugging.
349 LOG(INFO) << "Try to dump init process call trace:";
350 const char* vdc_argv[] = {"/system/bin/debuggerd", "-b", "1"};
351 int status;
Tom Cherry3a803eb2019-09-25 16:23:50 -0700352 logwrap_fork_execvp(arraysize(vdc_argv), vdc_argv, &status, false, LOG_KLOG,
353 true, nullptr);
Tom Cherry2436e6b2019-09-19 11:16:19 -0700354 }
josephjangaaddf282019-04-16 18:46:24 +0800355 LOG(INFO) << "Show stack for all active CPU:";
356 WriteStringToFile("l", PROC_SYSRQ);
357
358 LOG(INFO) << "Show tasks that are in disk sleep(uninterruptable sleep), which are "
359 "like "
360 "blocked in mutex or hardware register access:";
361 WriteStringToFile("w", PROC_SYSRQ);
362 }
363
364 // In shutdown case,notify kernel to sync and umount fs to read-only before shutdown.
365 if (cmd == ANDROID_RB_POWEROFF || cmd == ANDROID_RB_THERMOFF) {
366 WriteStringToFile("s", PROC_SYSRQ);
367
368 WriteStringToFile("u", PROC_SYSRQ);
369
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100370 RebootSystem(cmd, reboot_target);
josephjangaaddf282019-04-16 18:46:24 +0800371 }
372
373 LOG(ERROR) << "Trigger crash at last!";
374 WriteStringToFile("c", PROC_SYSRQ);
375 } else {
376 timespec current_time_timespec;
377
378 if (clock_gettime(CLOCK_MONOTONIC, &current_time_timespec) == -1) {
379 LOG(ERROR) << "clock_gettime() fail! exit RebootMonitorThread()";
380 return;
381 }
382
383 remaining_shutdown_time =
384 shutdown_timeout_timespec.tv_sec - current_time_timespec.tv_sec;
385
386 LOG(INFO) << "remaining_shutdown_time: " << remaining_shutdown_time;
387 }
388 }
389}
Keun-young Park3ee0df92017-03-27 11:21:09 -0700390
Keun-young Park8d01f632017-03-13 11:54:47 -0700391/* Try umounting all emulated file systems R/W block device cfile systems.
392 * This will just try umount and give it up if it fails.
393 * For fs like ext4, this is ok as file system will be marked as unclean shutdown
394 * and necessary check can be done at the next reboot.
395 * For safer shutdown, caller needs to make sure that
396 * all processes / emulated partition for the target fs are all cleaned-up.
397 *
398 * return true when umount was successful. false when timed out.
399 */
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100400static UmountStat TryUmountAndFsck(unsigned int cmd, bool run_fsck,
josephjangaaddf282019-04-16 18:46:24 +0800401 std::chrono::milliseconds timeout, sem_t* reboot_semaphore) {
Keun-young Park3ee0df92017-03-27 11:21:09 -0700402 Timer t;
Keun-young Park2ba5c812017-03-29 12:54:40 -0700403 std::vector<MountEntry> block_devices;
404 std::vector<MountEntry> emulated_devices;
Keun-young Park8d01f632017-03-13 11:54:47 -0700405
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100406 if (run_fsck && !FindPartitionsToUmount(&block_devices, &emulated_devices, false)) {
Keun-young Park8d01f632017-03-13 11:54:47 -0700407 return UMOUNT_STAT_ERROR;
408 }
Keun-young Park2ba5c812017-03-29 12:54:40 -0700409
Tom Cherryede0d532017-07-06 14:20:11 -0700410 UmountStat stat = UmountPartitions(timeout - t.duration());
Keun-young Park2ba5c812017-03-29 12:54:40 -0700411 if (stat != UMOUNT_STAT_SUCCESS) {
412 LOG(INFO) << "umount timeout, last resort, kill all and try";
Jonglin Lee28a2c922019-01-15 16:38:44 -0800413 if (DUMP_ON_UMOUNT_FAILURE) DumpUmountDebuggingInfo();
Keun-young Park3ee0df92017-03-27 11:21:09 -0700414 KillAllProcesses();
Keun-young Park2ba5c812017-03-29 12:54:40 -0700415 // even if it succeeds, still it is timeout and do not run fsck with all processes killed
Keun-young Parkc59b8222017-07-18 18:52:25 -0700416 UmountStat st = UmountPartitions(0ms);
Jonglin Lee28a2c922019-01-15 16:38:44 -0800417 if ((st != UMOUNT_STAT_SUCCESS) && DUMP_ON_UMOUNT_FAILURE) DumpUmountDebuggingInfo();
Keun-young Park8d01f632017-03-13 11:54:47 -0700418 }
419
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100420 if (stat == UMOUNT_STAT_SUCCESS && run_fsck) {
josephjangaaddf282019-04-16 18:46:24 +0800421 LOG(INFO) << "Pause reboot monitor thread before fsck";
422 sem_post(reboot_semaphore);
423
Keun-young Park2ba5c812017-03-29 12:54:40 -0700424 // fsck part is excluded from timeout check. It only runs for user initiated shutdown
425 // and should not affect reboot time.
426 for (auto& entry : block_devices) {
427 entry.DoFsck();
428 }
josephjangaaddf282019-04-16 18:46:24 +0800429
430 LOG(INFO) << "Resume reboot monitor thread after fsck";
431 sem_post(reboot_semaphore);
Keun-young Park2ba5c812017-03-29 12:54:40 -0700432 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700433 return stat;
434}
435
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800436// zram is able to use backing device on top of a loopback device.
437// In order to unmount /data successfully, we have to kill the loopback device first
438#define ZRAM_DEVICE "/dev/block/zram0"
439#define ZRAM_RESET "/sys/block/zram0/reset"
440#define ZRAM_BACK_DEV "/sys/block/zram0/backing_dev"
Nikita Ioffe12a36072019-10-23 20:11:32 +0100441static Result<void> KillZramBackingDevice() {
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800442 std::string backing_dev;
Nikita Ioffe12a36072019-10-23 20:11:32 +0100443 if (!android::base::ReadFileToString(ZRAM_BACK_DEV, &backing_dev)) return {};
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800444
Nikita Ioffe12a36072019-10-23 20:11:32 +0100445 if (!android::base::StartsWith(backing_dev, "/dev/block/loop")) return {};
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800446
447 // cut the last "\n"
448 backing_dev.erase(backing_dev.length() - 1);
449
450 // shutdown zram handle
451 Timer swap_timer;
452 LOG(INFO) << "swapoff() start...";
453 if (swapoff(ZRAM_DEVICE) == -1) {
Nikita Ioffe12a36072019-10-23 20:11:32 +0100454 return ErrnoError() << "zram_backing_dev: swapoff (" << backing_dev << ")"
455 << " failed";
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800456 }
457 LOG(INFO) << "swapoff() took " << swap_timer;;
458
josephjangaaddf282019-04-16 18:46:24 +0800459 if (!WriteStringToFile("1", ZRAM_RESET)) {
Nikita Ioffe12a36072019-10-23 20:11:32 +0100460 return Error() << "zram_backing_dev: reset (" << backing_dev << ")"
461 << " failed";
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800462 }
463
464 // clear loopback device
465 unique_fd loop(TEMP_FAILURE_RETRY(open(backing_dev.c_str(), O_RDWR | O_CLOEXEC)));
466 if (loop.get() < 0) {
Nikita Ioffe12a36072019-10-23 20:11:32 +0100467 return ErrnoError() << "zram_backing_dev: open(" << backing_dev << ")"
468 << " failed";
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800469 }
470
471 if (ioctl(loop.get(), LOOP_CLR_FD, 0) < 0) {
Nikita Ioffe12a36072019-10-23 20:11:32 +0100472 return ErrnoError() << "zram_backing_dev: loop_clear (" << backing_dev << ")"
473 << " failed";
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800474 }
475 LOG(INFO) << "zram_backing_dev: `" << backing_dev << "` is cleared successfully.";
Nikita Ioffe12a36072019-10-23 20:11:32 +0100476 return {};
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800477}
478
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100479// Stops given services, waits for them to be stopped for |timeout| ms.
480// If terminate is true, then SIGTERM is sent to services, otherwise SIGKILL is sent.
481static void StopServices(const std::vector<Service*>& services, std::chrono::milliseconds timeout,
482 bool terminate) {
483 LOG(INFO) << "Stopping " << services.size() << " services by sending "
484 << (terminate ? "SIGTERM" : "SIGKILL");
485 std::vector<pid_t> pids;
486 pids.reserve(services.size());
487 for (const auto& s : services) {
488 if (s->pid() > 0) {
489 pids.push_back(s->pid());
490 }
491 if (terminate) {
492 s->Terminate();
493 } else {
494 s->Stop();
495 }
496 }
497 if (timeout > 0ms) {
498 WaitToBeReaped(pids, timeout);
499 } else {
500 // Even if we don't to wait for services to stop, we still optimistically reap zombies.
501 ReapAnyOutstandingChildren();
502 }
503}
504
505// Like StopServices, but also logs all the services that failed to stop after the provided timeout.
506// Returns number of violators.
507static int StopServicesAndLogViolations(const std::vector<Service*>& services,
508 std::chrono::milliseconds timeout, bool terminate) {
509 StopServices(services, timeout, terminate);
510 int still_running = 0;
511 for (const auto& s : services) {
512 if (s->IsRunning()) {
513 LOG(ERROR) << "[service-misbehaving] : service '" << s->name() << "' is still running "
514 << timeout.count() << "ms after receiving "
515 << (terminate ? "SIGTERM" : "SIGKILL");
516 still_running++;
517 }
518 }
519 return still_running;
520}
521
Tom Cherry44aceed2018-08-03 13:36:18 -0700522//* Reboot / shutdown the system.
523// cmd ANDROID_RB_* as defined in android_reboot.h
524// reason Reason string like "reboot", "shutdown,userrequested"
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100525// reboot_target Reboot target string like "bootloader". Otherwise, it should be an empty string.
526// run_fsck Whether to run fsck after umount is done.
Tom Cherry44aceed2018-08-03 13:36:18 -0700527//
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100528static void DoReboot(unsigned int cmd, const std::string& reason, const std::string& reboot_target,
529 bool run_fsck) {
Keun-young Park8d01f632017-03-13 11:54:47 -0700530 Timer t;
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100531 LOG(INFO) << "Reboot start, reason: " << reason << ", reboot_target: " << reboot_target;
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700532
Tom Cherry2436e6b2019-09-19 11:16:19 -0700533 // If /data isn't mounted then we can skip the extra reboot steps below, since we don't need to
534 // worry about unmounting it.
535 if (!IsDataMounted()) {
536 sync();
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100537 RebootSystem(cmd, reboot_target);
Tom Cherry2436e6b2019-09-19 11:16:19 -0700538 abort();
539 }
540
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700541 // Ensure last reboot reason is reduced to canonical
542 // alias reported in bootloader or system boot reason.
543 size_t skip = 0;
544 std::vector<std::string> reasons = Split(reason, ",");
545 if (reasons.size() >= 2 && reasons[0] == "reboot" &&
546 (reasons[1] == "recovery" || reasons[1] == "bootloader" || reasons[1] == "cold" ||
547 reasons[1] == "hard" || reasons[1] == "warm")) {
548 skip = strlen("reboot,");
549 }
Tom Cherryc88d8f92019-08-19 15:21:25 -0700550 SetProperty(LAST_REBOOT_REASON_PROPERTY, reason.c_str() + skip);
Mark Salyzynee016ce2019-05-23 10:00:34 -0700551 WriteStringToFile(reason.c_str() + skip, LAST_REBOOT_REASON_FILE);
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700552 sync();
553
554 bool is_thermal_shutdown = cmd == ANDROID_RB_THERMOFF;
555
556 auto shutdown_timeout = 0ms;
557 if (!SHUTDOWN_ZERO_TIMEOUT) {
Wei Wangb5de0882018-10-09 12:42:06 -0700558 constexpr unsigned int shutdown_timeout_default = 6;
559 constexpr unsigned int max_thermal_shutdown_timeout = 3;
560 auto shutdown_timeout_final = android::base::GetUintProperty("ro.build.shutdown_timeout",
561 shutdown_timeout_default);
562 if (is_thermal_shutdown && shutdown_timeout_final > max_thermal_shutdown_timeout) {
563 shutdown_timeout_final = max_thermal_shutdown_timeout;
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700564 }
Wei Wangb5de0882018-10-09 12:42:06 -0700565 shutdown_timeout = std::chrono::seconds(shutdown_timeout_final);
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700566 }
567 LOG(INFO) << "Shutdown timeout: " << shutdown_timeout.count() << " ms";
568
josephjangaaddf282019-04-16 18:46:24 +0800569 sem_t reboot_semaphore;
570 if (sem_init(&reboot_semaphore, false, 0) == -1) {
571 // These should never fail, but if they do, skip the graceful reboot and reboot immediately.
572 LOG(ERROR) << "sem_init() fail and RebootSystem() return!";
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100573 RebootSystem(cmd, reboot_target);
josephjangaaddf282019-04-16 18:46:24 +0800574 }
575
576 // Start a thread to monitor init shutdown process
577 LOG(INFO) << "Create reboot monitor thread.";
578 bool reboot_monitor_run = true;
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100579 std::thread reboot_monitor_thread(&RebootMonitorThread, cmd, reboot_target, &reboot_semaphore,
josephjangaaddf282019-04-16 18:46:24 +0800580 shutdown_timeout, &reboot_monitor_run);
581 reboot_monitor_thread.detach();
582
583 // Start reboot monitor thread
584 sem_post(&reboot_semaphore);
585
Keun-young Park7830d592017-03-27 16:07:02 -0700586 // watchdogd is a vendor specific component but should be alive to complete shutdown safely.
Keun-young Parkcccb34f2017-07-05 11:38:44 -0700587 const std::set<std::string> to_starts{"watchdogd"};
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100588 std::vector<Service*> stop_first;
589 stop_first.reserve(ServiceList::GetInstance().services().size());
Tom Cherry911b9b12017-07-27 16:20:58 -0700590 for (const auto& s : ServiceList::GetInstance()) {
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100591 if (kDebuggingServices.count(s->name())) {
592 // keep debugging tools until non critical ones are all gone.
Keun-young Park7830d592017-03-27 16:07:02 -0700593 s->SetShutdownCritical();
594 } else if (to_starts.count(s->name())) {
Bernie Innocenticecebbb2020-02-06 03:49:33 +0900595 if (auto result = s->Start(); !result.ok()) {
Tom Cherry702ca9a2017-08-25 10:36:52 -0700596 LOG(ERROR) << "Could not start shutdown 'to_start' service '" << s->name()
597 << "': " << result.error();
598 }
Keun-young Park7830d592017-03-27 16:07:02 -0700599 s->SetShutdownCritical();
Keun-young Parkcccb34f2017-07-05 11:38:44 -0700600 } else if (s->IsShutdownCritical()) {
Tom Cherry702ca9a2017-08-25 10:36:52 -0700601 // Start shutdown critical service if not started.
Bernie Innocenticecebbb2020-02-06 03:49:33 +0900602 if (auto result = s->Start(); !result.ok()) {
Tom Cherry702ca9a2017-08-25 10:36:52 -0700603 LOG(ERROR) << "Could not start shutdown critical service '" << s->name()
604 << "': " << result.error();
605 }
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100606 } else {
607 stop_first.push_back(s.get());
Keun-young Park8d01f632017-03-13 11:54:47 -0700608 }
Tom Cherry911b9b12017-07-27 16:20:58 -0700609 }
Keun-young Park7830d592017-03-27 16:07:02 -0700610
Steven Morelandd5eccfd2018-01-19 13:01:53 -0800611 // remaining operations (specifically fsck) may take a substantial duration
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700612 if (cmd == ANDROID_RB_POWEROFF || is_thermal_shutdown) {
Steven Morelandd5eccfd2018-01-19 13:01:53 -0800613 TurnOffBacklight();
614 }
615
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100616 Service* boot_anim = ServiceList::GetInstance().FindService("bootanim");
617 Service* surface_flinger = ServiceList::GetInstance().FindService("surfaceflinger");
618 if (boot_anim != nullptr && surface_flinger != nullptr && surface_flinger->IsRunning()) {
Tom Cherry4f4cacc2019-01-08 10:39:00 -0800619 bool do_shutdown_animation = GetBoolProperty("ro.init.shutdown_animation", false);
620
621 if (do_shutdown_animation) {
Tom Cherryc88d8f92019-08-19 15:21:25 -0700622 SetProperty("service.bootanim.exit", "0");
Tom Cherry4f4cacc2019-01-08 10:39:00 -0800623 // Could be in the middle of animation. Stop and start so that it can pick
624 // up the right mode.
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100625 boot_anim->Stop();
Tom Cherry4f4cacc2019-01-08 10:39:00 -0800626 }
627
Tom Cherry911b9b12017-07-27 16:20:58 -0700628 for (const auto& service : ServiceList::GetInstance()) {
Tom Cherry4f4cacc2019-01-08 10:39:00 -0800629 if (service->classnames().count("animation") == 0) {
630 continue;
631 }
632
633 // start all animation classes if stopped.
634 if (do_shutdown_animation) {
Tom Cherry9949ec52019-05-16 16:54:49 -0700635 service->Start();
Tom Cherry4f4cacc2019-01-08 10:39:00 -0800636 }
637 service->SetShutdownCritical(); // will not check animation class separately
638 }
639
640 if (do_shutdown_animation) {
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100641 boot_anim->Start();
642 surface_flinger->SetShutdownCritical();
643 boot_anim->SetShutdownCritical();
Tom Cherry911b9b12017-07-27 16:20:58 -0700644 }
Keun-young Park8d01f632017-03-13 11:54:47 -0700645 }
Keun-young Park7830d592017-03-27 16:07:02 -0700646
Keun-young Park8d01f632017-03-13 11:54:47 -0700647 // optional shutdown step
648 // 1. terminate all services except shutdown critical ones. wait for delay to finish
Keun-young Park30173872017-07-18 10:58:28 -0700649 if (shutdown_timeout > 0ms) {
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100650 StopServicesAndLogViolations(stop_first, shutdown_timeout / 2, true /* SIGTERM */);
Keun-young Park8d01f632017-03-13 11:54:47 -0700651 }
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100652 // Send SIGKILL to ones that didn't terminate cleanly.
653 StopServicesAndLogViolations(stop_first, 0ms, false /* SIGKILL */);
Luis Hector Chavez92c49bc2018-07-27 11:19:25 -0700654 SubcontextTerminate();
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100655 // Reap subcontext pids.
Tom Cherryeeee8312017-07-28 15:22:23 -0700656 ReapAnyOutstandingChildren();
Keun-young Park8d01f632017-03-13 11:54:47 -0700657
658 // 3. send volume shutdown to vold
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100659 Service* vold_service = ServiceList::GetInstance().FindService("vold");
660 if (vold_service != nullptr && vold_service->IsRunning()) {
Nikita Ioffebee7b8c2019-12-02 11:51:39 +0000661 CallVdc("volume", "shutdown");
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100662 vold_service->Stop();
Keun-young Park8d01f632017-03-13 11:54:47 -0700663 } else {
664 LOG(INFO) << "vold not running, skipping vold shutdown";
665 }
Keun-young Park2ba5c812017-03-29 12:54:40 -0700666 // logcat stopped here
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100667 StopServices(GetDebuggingServices(false /* only_post_data */), 0ms, false /* SIGKILL */);
Keun-young Park8d01f632017-03-13 11:54:47 -0700668 // 4. sync, try umount, and optionally run fsck for user shutdown
Tom Cherry1f9d5402018-03-15 10:22:40 -0700669 {
670 Timer sync_timer;
671 LOG(INFO) << "sync() before umount...";
672 sync();
673 LOG(INFO) << "sync() before umount took" << sync_timer;
674 }
Jaegeuk Kim2aedc822018-11-20 13:27:06 -0800675 // 5. drop caches and disable zram backing device, if exist
676 KillZramBackingDevice();
677
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100678 UmountStat stat =
679 TryUmountAndFsck(cmd, run_fsck, shutdown_timeout - t.duration(), &reboot_semaphore);
Keun-young Park2ba5c812017-03-29 12:54:40 -0700680 // Follow what linux shutdown is doing: one more sync with little bit delay
Tom Cherry1f9d5402018-03-15 10:22:40 -0700681 {
682 Timer sync_timer;
683 LOG(INFO) << "sync() after umount...";
684 sync();
685 LOG(INFO) << "sync() after umount took" << sync_timer;
686 }
Tom Cherry0a72e6c2018-03-19 16:19:01 -0700687 if (!is_thermal_shutdown) std::this_thread::sleep_for(100ms);
Keun-young Park8d01f632017-03-13 11:54:47 -0700688 LogShutdownTime(stat, &t);
josephjangaaddf282019-04-16 18:46:24 +0800689
690 // Send signal to terminate reboot monitor thread.
691 reboot_monitor_run = false;
692 sem_post(&reboot_semaphore);
693
Keun-young Park8d01f632017-03-13 11:54:47 -0700694 // Reboot regardless of umount status. If umount fails, fsck after reboot will fix it.
Nikita Ioffee7ec8c82019-10-24 23:18:39 +0100695 RebootSystem(cmd, reboot_target);
Keun-young Park8d01f632017-03-13 11:54:47 -0700696 abort();
697}
Tom Cherry98ad32a2017-04-17 16:34:20 -0700698
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100699static void EnterShutdown() {
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100700 LOG(INFO) << "Entering shutdown mode";
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100701 shutting_down = true;
702 // Skip wait for prop if it is in progress
703 ResetWaitForProp();
704 // Clear EXEC flag if there is one pending
705 for (const auto& s : ServiceList::GetInstance()) {
706 s->UnSetExec();
707 }
708 // We no longer process messages about properties changing coming from property service, so we
709 // need to tell property service to stop sending us these messages, otherwise it'll fill the
710 // buffers and block indefinitely, causing future property sets, including those that init makes
711 // during shutdown in Service::NotifyStateChange() to also block indefinitely.
712 SendStopSendingMessagesMessage();
713}
714
715static void LeaveShutdown() {
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100716 LOG(INFO) << "Leaving shutdown mode";
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100717 shutting_down = false;
718 SendStartSendingMessagesMessage();
719}
720
Nikita Ioffeab91ee92019-11-06 21:40:31 +0000721static Result<void> UnmountAllApexes() {
722 const char* args[] = {"/system/bin/apexd", "--unmount-all"};
723 int status;
724 if (logwrap_fork_execvp(arraysize(args), args, &status, false, LOG_KLOG, true, nullptr) != 0) {
725 return ErrnoError() << "Failed to call '/system/bin/apexd --unmount-all'";
726 }
727 if (WIFEXITED(status) && WEXITSTATUS(status) == 0) {
728 return {};
729 }
730 return Error() << "'/system/bin/apexd --unmount-all' failed : " << status;
731}
732
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100733static Result<void> DoUserspaceReboot() {
734 LOG(INFO) << "Userspace reboot initiated";
735 auto guard = android::base::make_scope_guard([] {
736 // Leave shutdown so that we can handle a full reboot.
737 LeaveShutdown();
Nikita Ioffe4a787d92020-01-15 23:23:13 +0000738 trigger_shutdown("reboot,userspace_failed,shutdown_aborted");
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100739 });
Nikita Ioffec0df1872019-11-13 21:47:06 +0000740 // Triggering userspace-reboot-requested will result in a bunch of setprop
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100741 // actions. We should make sure, that all of them are propagated before
Nikita Ioffe764c1ac2020-01-27 17:14:46 +0000742 // proceeding with userspace reboot. Synchronously setting sys.init.userspace_reboot.in_progress
743 // property is not perfect, but it should do the trick.
Nikita Ioffe23dbd6d2019-11-14 01:21:24 +0000744 if (!android::sysprop::InitProperties::userspace_reboot_in_progress(true)) {
745 return Error() << "Failed to set sys.init.userspace_reboot.in_progress property";
Nikita Ioffec0df1872019-11-13 21:47:06 +0000746 }
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100747 EnterShutdown();
Nikita Ioffe764c1ac2020-01-27 17:14:46 +0000748 if (!SetProperty("sys.powerctl", "")) {
749 return Error() << "Failed to reset sys.powerctl property";
750 }
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100751 std::vector<Service*> stop_first;
752 // Remember the services that were enabled. We will need to manually enable them again otherwise
753 // triggers like class_start won't restart them.
754 std::vector<Service*> were_enabled;
755 stop_first.reserve(ServiceList::GetInstance().services().size());
756 for (const auto& s : ServiceList::GetInstance().services_in_shutdown_order()) {
757 if (s->is_post_data() && !kDebuggingServices.count(s->name())) {
758 stop_first.push_back(s);
759 }
760 if (s->is_post_data() && s->IsEnabled()) {
761 were_enabled.push_back(s);
762 }
763 }
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000764 {
765 Timer sync_timer;
766 LOG(INFO) << "sync() before terminating services...";
767 sync();
768 LOG(INFO) << "sync() took " << sync_timer;
769 }
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100770 // TODO(b/135984674): do we need shutdown animation for userspace reboot?
771 // TODO(b/135984674): control userspace timeout via read-only property?
772 StopServicesAndLogViolations(stop_first, 10s, true /* SIGTERM */);
773 if (int r = StopServicesAndLogViolations(stop_first, 20s, false /* SIGKILL */); r > 0) {
774 // TODO(b/135984674): store information about offending services for debugging.
775 return Error() << r << " post-data services are still running";
776 }
Bernie Innocenticecebbb2020-02-06 03:49:33 +0900777 if (auto result = KillZramBackingDevice(); !result.ok()) {
Nikita Ioffebee7b8c2019-12-02 11:51:39 +0000778 return result;
779 }
Bernie Innocenticecebbb2020-02-06 03:49:33 +0900780 if (auto result = CallVdc("volume", "reset"); !result.ok()) {
Nikita Ioffebee7b8c2019-12-02 11:51:39 +0000781 return result;
782 }
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100783 if (int r = StopServicesAndLogViolations(GetDebuggingServices(true /* only_post_data */), 5s,
784 false /* SIGKILL */);
785 r > 0) {
786 // TODO(b/135984674): store information about offending services for debugging.
787 return Error() << r << " debugging services are still running";
788 }
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000789 {
790 Timer sync_timer;
791 LOG(INFO) << "sync() after stopping services...";
792 sync();
793 LOG(INFO) << "sync() took " << sync_timer;
794 }
Bernie Innocenticecebbb2020-02-06 03:49:33 +0900795 if (auto result = UnmountAllApexes(); !result.ok()) {
Nikita Ioffeab91ee92019-11-06 21:40:31 +0000796 return result;
797 }
798 if (!SwitchToBootstrapMountNamespaceIfNeeded()) {
799 return Error() << "Failed to switch to bootstrap namespace";
800 }
Nikita Ioffe091c4d12019-12-05 12:35:19 +0000801 // Remove services that were defined in an APEX.
802 ServiceList::GetInstance().RemoveServiceIf([](const std::unique_ptr<Service>& s) -> bool {
803 if (s->is_from_apex()) {
804 LOG(INFO) << "Removing service '" << s->name() << "' because it's defined in an APEX";
805 return true;
806 }
807 return false;
808 });
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100809 // Re-enable services
810 for (const auto& s : were_enabled) {
811 LOG(INFO) << "Re-enabling service '" << s->name() << "'";
812 s->Enable();
813 }
814 LeaveShutdown();
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100815 ActionManager::GetInstance().QueueEventTrigger("userspace-reboot-resume");
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100816 guard.Disable(); // Go on with userspace reboot.
817 return {};
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100818}
819
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000820static void UserspaceRebootWatchdogThread() {
Nikita Ioffe57d7bb62019-11-28 18:25:24 +0000821 if (!WaitForProperty("sys.init.userspace_reboot.in_progress", "1", 20s)) {
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000822 // TODO(b/135984674): should we reboot instead?
823 LOG(WARNING) << "Userspace reboot didn't start in 20 seconds. Stopping watchdog";
824 return;
825 }
826 LOG(INFO) << "Starting userspace reboot watchdog";
827 // TODO(b/135984674): this should be configured via a read-only sysprop.
828 std::chrono::milliseconds timeout = 60s;
829 if (!WaitForProperty("sys.boot_completed", "1", timeout)) {
830 LOG(ERROR) << "Failed to boot in " << timeout.count() << "ms. Switching to full reboot";
831 // In this case device is in a boot loop. Only way to recover is to do dirty reboot.
Nikita Ioffe4a787d92020-01-15 23:23:13 +0000832 RebootSystem(ANDROID_RB_RESTART2, "userspace_failed,watchdog_triggered");
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000833 }
834 LOG(INFO) << "Device booted, stopping userspace reboot watchdog";
835}
836
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100837static void HandleUserspaceReboot() {
Nikita Ioffe018ddd72019-12-20 16:34:48 +0000838 if (!android::sysprop::InitProperties::is_userspace_reboot_supported().value_or(false)) {
Nikita Ioffe9f473c02019-12-18 13:31:42 +0000839 LOG(ERROR) << "Attempted a userspace reboot on a device that doesn't support it";
840 return;
841 }
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000842 // Spinnig up a separate thread will fail the setns call later in the boot sequence.
843 // Fork a new process to monitor userspace reboot while we are investigating a better solution.
844 pid_t pid = fork();
845 if (pid < 0) {
846 PLOG(ERROR) << "Failed to fork process for userspace reboot watchdog. Switching to full "
847 << "reboot";
Nikita Ioffe4a787d92020-01-15 23:23:13 +0000848 trigger_shutdown("reboot,userspace_failed,watchdog_fork");
Nikita Ioffe82a431e2019-11-07 15:37:38 +0000849 return;
850 }
851 if (pid == 0) {
852 // Child
853 UserspaceRebootWatchdogThread();
854 _exit(EXIT_SUCCESS);
855 }
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100856 LOG(INFO) << "Clearing queue and starting userspace-reboot-requested trigger";
857 auto& am = ActionManager::GetInstance();
858 am.ClearQueue();
859 am.QueueEventTrigger("userspace-reboot-requested");
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +0100860 auto handler = [](const BuiltinArguments&) { return DoUserspaceReboot(); };
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100861 am.QueueBuiltinAction(handler, "userspace-reboot");
862}
863
Sam Protsenko2c7c3c72019-12-26 21:55:08 +0200864/**
865 * Check if "command" field is set in bootloader message.
866 *
867 * If "command" field is broken (contains non-printable characters prior to
868 * terminating zero), it will be zeroed.
869 *
870 * @param[in,out] boot Bootloader message (BCB) structure
871 * @return true if "command" field is already set, and false if it's empty
872 */
873static bool CommandIsPresent(bootloader_message* boot) {
874 if (boot->command[0] == '\0')
875 return false;
876
877 for (size_t i = 0; i < arraysize(boot->command); ++i) {
878 if (boot->command[i] == '\0')
879 return true;
880 if (!isprint(boot->command[i]))
881 break;
882 }
883
884 memset(boot->command, 0, sizeof(boot->command));
885 return false;
886}
887
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100888void HandlePowerctlMessage(const std::string& command) {
Tom Cherry98ad32a2017-04-17 16:34:20 -0700889 unsigned int cmd = 0;
Mark Salyzyn62909822017-10-09 09:27:16 -0700890 std::vector<std::string> cmd_params = Split(command, ",");
Tom Cherry98ad32a2017-04-17 16:34:20 -0700891 std::string reboot_target = "";
892 bool run_fsck = false;
893 bool command_invalid = false;
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100894 bool userspace_reboot = false;
Tom Cherry98ad32a2017-04-17 16:34:20 -0700895
Mark Salyzynd7931f12019-07-10 10:33:09 -0700896 if (cmd_params[0] == "shutdown") {
Tom Cherry98ad32a2017-04-17 16:34:20 -0700897 cmd = ANDROID_RB_POWEROFF;
Mark Salyzynd7931f12019-07-10 10:33:09 -0700898 if (cmd_params.size() >= 2) {
Mark Salyzyn73e6b492017-08-14 15:56:53 -0700899 if (cmd_params[1] == "userrequested") {
900 // The shutdown reason is PowerManager.SHUTDOWN_USER_REQUESTED.
901 // Run fsck once the file system is remounted in read-only mode.
902 run_fsck = true;
903 } else if (cmd_params[1] == "thermal") {
Mark Salyzynbfd05b62017-09-26 11:10:12 -0700904 // Turn off sources of heat immediately.
905 TurnOffBacklight();
Mark Salyzyn73e6b492017-08-14 15:56:53 -0700906 // run_fsck is false to avoid delay
907 cmd = ANDROID_RB_THERMOFF;
908 }
Tom Cherry98ad32a2017-04-17 16:34:20 -0700909 }
910 } else if (cmd_params[0] == "reboot") {
911 cmd = ANDROID_RB_RESTART2;
912 if (cmd_params.size() >= 2) {
913 reboot_target = cmd_params[1];
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100914 if (reboot_target == "userspace") {
915 LOG(INFO) << "Userspace reboot requested";
916 userspace_reboot = true;
917 }
Hridya Valsaraju54258262018-09-19 21:14:18 -0700918 // adb reboot fastboot should boot into bootloader for devices not
919 // supporting logical partitions.
920 if (reboot_target == "fastboot" &&
Yifan Hong0e0f8182018-11-16 12:49:06 -0800921 !android::base::GetBoolProperty("ro.boot.dynamic_partitions", false)) {
Hridya Valsaraju54258262018-09-19 21:14:18 -0700922 reboot_target = "bootloader";
923 }
Tom Cherry98ad32a2017-04-17 16:34:20 -0700924 // When rebooting to the bootloader notify the bootloader writing
925 // also the BCB.
926 if (reboot_target == "bootloader") {
927 std::string err;
928 if (!write_reboot_bootloader(&err)) {
929 LOG(ERROR) << "reboot-bootloader: Error writing "
930 "bootloader_message: "
931 << err;
932 }
Tianjie Xu5e98b632019-07-18 12:48:28 -0700933 } else if (reboot_target == "recovery") {
934 bootloader_message boot = {};
935 if (std::string err; !read_bootloader_message(&boot, &err)) {
936 LOG(ERROR) << "Failed to read bootloader message: " << err;
937 }
938 // Update the boot command field if it's empty, and preserve
939 // the other arguments in the bootloader message.
Sam Protsenko2c7c3c72019-12-26 21:55:08 +0200940 if (!CommandIsPresent(&boot)) {
Tianjie Xu5e98b632019-07-18 12:48:28 -0700941 strlcpy(boot.command, "boot-recovery", sizeof(boot.command));
942 if (std::string err; !write_bootloader_message(boot, &err)) {
943 LOG(ERROR) << "Failed to set bootloader message: " << err;
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100944 return;
Tianjie Xu5e98b632019-07-18 12:48:28 -0700945 }
946 }
Hridya Valsaraju71fb82a2018-08-02 15:02:06 -0700947 } else if (reboot_target == "sideload" || reboot_target == "sideload-auto-reboot" ||
948 reboot_target == "fastboot") {
949 std::string arg = reboot_target == "sideload-auto-reboot" ? "sideload_auto_reboot"
950 : reboot_target;
951 const std::vector<std::string> options = {
952 "--" + arg,
953 };
954 std::string err;
955 if (!write_bootloader_message(options, &err)) {
956 LOG(ERROR) << "Failed to set bootloader message: " << err;
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100957 return;
Hridya Valsaraju71fb82a2018-08-02 15:02:06 -0700958 }
959 reboot_target = "recovery";
Tom Cherry98ad32a2017-04-17 16:34:20 -0700960 }
Hridya Valsaraju71fb82a2018-08-02 15:02:06 -0700961
Mark Salyzynd7931f12019-07-10 10:33:09 -0700962 // If there are additional parameter, pass them along
963 for (size_t i = 2; (cmd_params.size() > i) && cmd_params[i].size(); ++i) {
964 reboot_target += "," + cmd_params[i];
Tom Cherry98ad32a2017-04-17 16:34:20 -0700965 }
966 }
Tom Cherry98ad32a2017-04-17 16:34:20 -0700967 } else {
968 command_invalid = true;
969 }
970 if (command_invalid) {
971 LOG(ERROR) << "powerctl: unrecognized command '" << command << "'";
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100972 return;
973 }
974
975 if (userspace_reboot) {
976 HandleUserspaceReboot();
977 return;
Tom Cherry98ad32a2017-04-17 16:34:20 -0700978 }
979
Wei Wangeeab4912017-06-27 22:08:45 -0700980 LOG(INFO) << "Clear action queue and start shutdown trigger";
981 ActionManager::GetInstance().ClearQueue();
982 // Queue shutdown trigger first
983 ActionManager::GetInstance().QueueEventTrigger("shutdown");
984 // Queue built-in shutdown_done
Tom Cherrycb0f9bb2017-09-12 15:58:47 -0700985 auto shutdown_handler = [cmd, command, reboot_target, run_fsck](const BuiltinArguments&) {
Wei Wangeeab4912017-06-27 22:08:45 -0700986 DoReboot(cmd, command, reboot_target, run_fsck);
Tom Cherrybbcbc2f2019-06-10 11:08:01 -0700987 return Result<void>{};
Wei Wangeeab4912017-06-27 22:08:45 -0700988 };
989 ActionManager::GetInstance().QueueBuiltinAction(shutdown_handler, "shutdown_done");
990
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100991 EnterShutdown();
992}
Wei Wangeeab4912017-06-27 22:08:45 -0700993
Nikita Ioffeba6968e2019-10-07 16:26:33 +0100994bool IsShuttingDown() {
995 return shutting_down;
Tom Cherry98ad32a2017-04-17 16:34:20 -0700996}
Tom Cherry81f5d3e2017-06-22 12:53:17 -0700997
998} // namespace init
999} // namespace android