blob: decea9af8e7f82a1990bd6ce5795080dd8c79b85 [file] [log] [blame]
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -07001
2Android Init Language
3---------------------
4
5The Android Init Language consists of four broad classes of statements,
6which are Actions, Commands, Services, and Options.
7
8All of these are line-oriented, consisting of tokens separated by
9whitespace. The c-style backslash escapes may be used to insert
10whitespace into a token. Double quotes may also be used to prevent
11whitespace from breaking text into multiple tokens. The backslash,
12when it is the last character on a line, may be used for line-folding.
13
14Lines which start with a # (leading whitespace allowed) are comments.
15
16Actions and Services implicitly declare a new section. All commands
17or options belong to the section most recently declared. Commands
18or options before the first section are ignored.
19
20Actions and Services have unique names. If a second Action or Service
21is declared with the same name as an existing one, it is ignored as
22an error. (??? should we override instead)
23
24
25Actions
26-------
27Actions are named sequences of commands. Actions have a trigger which
28is used to determine when the action should occur. When an event
29occurs which matches an action's trigger, that action is added to
30the tail of a to-be-executed queue (unless it is already on the
31queue).
32
33Each action in the queue is dequeued in sequence and each command in
34that action is executed in sequence. Init handles other activities
35(device creation/destruction, property setting, process restarting)
36"between" the execution of the commands in activities.
37
38Actions take the form of:
39
40on <trigger>
41 <command>
42 <command>
43 <command>
44
45
46Services
47--------
48Services are programs which init launches and (optionally) restarts
49when they exit. Services take the form of:
50
51service <name> <pathname> [ <argument> ]*
52 <option>
53 <option>
54 ...
55
56
57Options
58-------
59Options are modifiers to services. They affect how and when init
60runs the service.
61
62critical
63 This is a device-critical service. If it exits more than four times in
64 four minutes, the device will reboot into recovery mode.
65
66disabled
67 This service will not automatically start with its class.
68 It must be explicitly started by name.
69
70setenv <name> <value>
71 Set the environment variable <name> to <value> in the launched process.
72
Stephen Smalley8348d272013-05-13 12:37:04 -040073socket <name> <type> <perm> [ <user> [ <group> [ <context> ] ] ]
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -070074 Create a unix domain socket named /dev/socket/<name> and pass
Mike Lockwood912ff852010-10-01 08:20:36 -040075 its fd to the launched process. <type> must be "dgram", "stream" or "seqpacket".
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -070076 User and group default to 0.
Stephen Smalley8348d272013-05-13 12:37:04 -040077 Context is the SELinux security context for the socket.
78 It defaults to the service security context, as specified by seclabel or
79 computed based on the service executable file security context.
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -070080
81user <username>
82 Change to username before exec'ing this service.
83 Currently defaults to root. (??? probably should default to nobody)
84 Currently, if your process requires linux capabilities then you cannot use
85 this command. You must instead request the capabilities in-process while
86 still root, and then drop to your desired uid.
87
88group <groupname> [ <groupname> ]*
89 Change to groupname before exec'ing this service. Additional
90 groupnames beyond the (required) first one are used to set the
91 supplemental groups of the process (via setgroups()).
92 Currently defaults to root. (??? probably should default to nobody)
93
Stephen Smalley3fb61102012-11-02 15:22:34 -040094seclabel <securitycontext>
95 Change to securitycontext before exec'ing this service.
96 Primarily for use by services run from the rootfs, e.g. ueventd, adbd.
97 Services on the system partition can instead use policy-defined transitions
98 based on their file security context.
99 If not specified and no transition is defined in policy, defaults to the init context.
100
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700101oneshot
102 Do not restart the service when it exits.
103
104class <name>
105 Specify a class name for the service. All services in a
106 named class may be started or stopped together. A service
107 is in the class "default" if one is not specified via the
108 class option.
109
110onrestart
111 Execute a Command (see below) when service restarts.
112
113Triggers
114--------
115 Triggers are strings which can be used to match certain kinds
116 of events and used to cause an action to occur.
117
118boot
119 This is the first trigger that will occur when init starts
120 (after /init.conf is loaded)
121
122<name>=<value>
123 Triggers of this form occur when the property <name> is set
124 to the specific value <value>.
125
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700126Commands
127--------
128
129exec <path> [ <argument> ]*
130 Fork and execute a program (<path>). This will block until
131 the program completes execution. It is best to avoid exec
132 as unlike the builtin commands, it runs the risk of getting
133 init "stuck". (??? maybe there should be a timeout?)
134
135export <name> <value>
136 Set the environment variable <name> equal to <value> in the
137 global environment (which will be inherited by all processes
138 started after this command is executed)
139
140ifup <interface>
141 Bring the network interface <interface> online.
142
143import <filename>
144 Parse an init config file, extending the current configuration.
145
146hostname <name>
147 Set the host name.
148
Jay Freeman (saurik)e7cb1372008-11-17 06:41:10 +0000149chdir <directory>
150 Change working directory.
151
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700152chmod <octal-mode> <path>
153 Change file access permissions.
154
155chown <owner> <group> <path>
156 Change file owner and group.
157
Jay Freeman (saurik)e7cb1372008-11-17 06:41:10 +0000158chroot <directory>
159 Change process root directory.
160
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700161class_start <serviceclass>
162 Start all services of the specified class if they are
163 not already running.
164
165class_stop <serviceclass>
166 Stop all services of the specified class if they are
167 currently running.
168
169domainname <name>
170 Set the domain name.
171
JP Abgrall3beec7e2014-05-02 21:14:29 -0700172enable <servicename>
173 Turns a disabled service into an enabled one as if the service did not
174 specify disabled.
175 If the service is supposed to be running, it will be started now.
176 Typically used when the bootloader sets a variable that indicates a specific
177 service should be started when needed. E.g.
178 on property:ro.boot.myfancyhardware=1
179 enable my_fancy_service_for_my_fancy_hardware
180
181
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700182insmod <path>
183 Install the module at <path>
184
185mkdir <path> [mode] [owner] [group]
186 Create a directory at <path>, optionally with the given mode, owner, and
187 group. If not provided, the directory is created with permissions 755 and
188 owned by the root user and root group.
189
190mount <type> <device> <dir> [ <mountoption> ]*
191 Attempt to mount the named device at the directory <dir>
192 <device> may be of the form mtd@name to specify a mtd block
193 device by name.
194 <mountoption>s include "ro", "rw", "remount", "noatime", ...
195
Stephen Smalley726e8f72013-10-09 16:02:09 -0400196restorecon <path> [ <path> ]*
Stephen Smalley3fb61102012-11-02 15:22:34 -0400197 Restore the file named by <path> to the security context specified
198 in the file_contexts configuration.
199 Not required for directories created by the init.rc as these are
200 automatically labeled correctly by init.
201
Stephen Smalley726e8f72013-10-09 16:02:09 -0400202restorecon_recursive <path> [ <path> ]*
203 Recursively restore the directory tree named by <path> to the
204 security contexts specified in the file_contexts configuration.
205 Do NOT use this with paths leading to shell-writable or app-writable
206 directories, e.g. /data/local/tmp, /data/data or any prefix thereof.
207
Stephen Smalley3fb61102012-11-02 15:22:34 -0400208setcon <securitycontext>
209 Set the current process security context to the specified string.
210 This is typically only used from early-init to set the init context
211 before any other process is started.
212
213setenforce 0|1
214 Set the SELinux system-wide enforcing status.
215 0 is permissive (i.e. log but do not deny), 1 is enforcing.
216
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700217setkey
218 TBD
219
220setprop <name> <value>
221 Set system property <name> to <value>.
222
223setrlimit <resource> <cur> <max>
224 Set the rlimit for a resource.
225
Stephen Smalley0e23fee2012-11-28 13:52:12 -0500226setsebool <name> <value>
Stephen Smalley3fb61102012-11-02 15:22:34 -0400227 Set SELinux boolean <name> to <value>.
228 <value> may be 1|true|on or 0|false|off
229
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700230start <service>
231 Start a service running if it is not already running.
232
233stop <service>
234 Stop a service from running if it is currently running.
235
236symlink <target> <path>
237 Create a symbolic link at <path> with the value <target>
238
The Android Open Source Project35237d12008-12-17 18:08:08 -0800239sysclktz <mins_west_of_gmt>
240 Set the system clock base (0 if system clock ticks in GMT)
241
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700242trigger <event>
243 Trigger an event. Used to queue an action from another
244 action.
245
Patrick McCormick96d0a4d2011-02-04 10:51:39 -0800246wait <path> [ <timeout> ]
247 Poll for the existence of the given file and return when found,
248 or the timeout has been reached. If timeout is not specified it
249 currently defaults to five seconds.
250
Elliott Hughesafc08ce2014-07-25 10:39:41 -0700251write <path> <string>
252 Open the file at <path> and write a string to it with write(2)
253 without appending.
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700254
255
256Properties
257----------
258Init updates some system properties to provide some insight into
259what it's doing:
260
261init.action
262 Equal to the name of the action currently being executed or "" if none
263
264init.command
265 Equal to the command being executed or "" if none.
266
267init.svc.<name>
268 State of a named service ("stopped", "running", "restarting")
269
270
271Example init.conf
272-----------------
273
274# not complete -- just providing some examples of usage
275#
276on boot
277 export PATH /sbin:/system/sbin:/system/bin
278 export LD_LIBRARY_PATH /system/lib
279
280 mkdir /dev
281 mkdir /proc
282 mkdir /sys
283
284 mount tmpfs tmpfs /dev
285 mkdir /dev/pts
286 mkdir /dev/socket
287 mount devpts devpts /dev/pts
288 mount proc proc /proc
289 mount sysfs sysfs /sys
290
291 write /proc/cpu/alignment 4
292
293 ifup lo
294
295 hostname localhost
296 domainname localhost
297
298 mount yaffs2 mtd@system /system
299 mount yaffs2 mtd@userdata /data
300
301 import /system/etc/init.conf
302
303 class_start default
304
305service adbd /sbin/adbd
306 user adb
307 group adb
308
309service usbd /system/bin/usbd -r
310 user usbd
311 group usbd
312 socket usbd 666
313
314service zygote /system/bin/app_process -Xzygote /system/bin --zygote
315 socket zygote 666
316
317service runtime /system/bin/runtime
318 user system
319 group system
320
The Android Open Source Project4f6e8d72008-10-21 07:00:00 -0700321service akmd /sbin/akmd
322 disabled
323 user akmd
324 group akmd
325
326Debugging notes
327---------------
328By default, programs executed by init will drop stdout and stderr into
329/dev/null. To help with debugging, you can execute your program via the
330Andoird program logwrapper. This will redirect stdout/stderr into the
331Android logging system (accessed via logcat).
332
333For example
334service akmd /system/bin/logwrapper /sbin/akmd