blob: d0842a9e027d3bbad0052867d2eaf9c16c8770c0 [file] [log] [blame]
Yifan Hong537802d2018-08-15 13:15:42 -07001//
2// Copyright (C) 2018 The Android Open Source Project
3//
4// Licensed under the Apache License, Version 2.0 (the "License");
5// you may not use this file except in compliance with the License.
6// You may obtain a copy of the License at
7//
8// http://www.apache.org/licenses/LICENSE-2.0
9//
10// Unless required by applicable law or agreed to in writing, software
11// distributed under the License is distributed on an "AS IS" BASIS,
12// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13// See the License for the specific language governing permissions and
14// limitations under the License.
15//
16
Amin Hassaniec7bc112020-10-29 16:47:58 -070017#ifndef UPDATE_ENGINE_AOSP_DYNAMIC_PARTITION_CONTROL_ANDROID_H_
18#define UPDATE_ENGINE_AOSP_DYNAMIC_PARTITION_CONTROL_ANDROID_H_
Yifan Hong537802d2018-08-15 13:15:42 -070019
Yifan Hong537802d2018-08-15 13:15:42 -070020#include <memory>
21#include <set>
22#include <string>
Kelvin Zhang91ad6622021-03-01 13:46:17 -050023#include <string_view>
Tianjie99d570d2020-06-04 14:57:19 -070024#include <vector>
Yifan Hong537802d2018-08-15 13:15:42 -070025
Yifan Hong3a1a5612019-11-05 16:34:32 -080026#include <base/files/file_util.h>
Yifan Hong2c62c132019-10-24 14:53:40 -070027#include <libsnapshot/auto_device.h>
Yifan Hong420db9b2019-07-23 20:50:33 -070028#include <libsnapshot/snapshot.h>
Kelvin Zhang34618522020-09-28 09:21:02 -040029#include <libsnapshot/snapshot_writer.h>
Yifan Hong420db9b2019-07-23 20:50:33 -070030
Yifan Hong15726b92019-11-05 19:06:48 -080031#include "update_engine/common/dynamic_partition_control_interface.h"
32
Yifan Hong537802d2018-08-15 13:15:42 -070033namespace chromeos_update_engine {
34
35class DynamicPartitionControlAndroid : public DynamicPartitionControlInterface {
36 public:
Kelvin Zhang91ad6622021-03-01 13:46:17 -050037 // A directory where all partitions mapped by VABC is expected to be found.
38 // Per earlier discussion with VAB team, this directory is unlikely to change.
39 // So we declare it as a constant here.
40 static constexpr std::string_view VABC_DEVICE_DIR = "/dev/block/mapper/";
Kelvin Zhangebd115e2021-03-08 16:10:25 -050041 explicit DynamicPartitionControlAndroid(uint32_t source_slot);
Yifan Hong537802d2018-08-15 13:15:42 -070042 ~DynamicPartitionControlAndroid();
Kelvin Zhang91d95fa2020-11-05 13:52:00 -050043
Yifan Hong186bb682019-07-23 14:04:39 -070044 FeatureFlag GetDynamicPartitionsFeatureFlag() override;
Yifan Hong413d5722019-07-23 14:21:09 -070045 FeatureFlag GetVirtualAbFeatureFlag() override;
Kelvin Zhangda1b3142020-09-24 17:09:02 -040046 FeatureFlag GetVirtualAbCompressionFeatureFlag() override;
Yifan Hongf5261562020-03-10 10:28:10 -070047 bool OptimizeOperation(const std::string& partition_name,
48 const InstallOperation& operation,
49 InstallOperation* optimized) override;
Yifan Hong537802d2018-08-15 13:15:42 -070050 void Cleanup() override;
Yifan Hong012508e2019-07-22 18:30:40 -070051
Yifan Hongf0f4a912019-09-26 17:51:33 -070052 bool PreparePartitionsForUpdate(uint32_t source_slot,
53 uint32_t target_slot,
54 const DeltaArchiveManifest& manifest,
Yifan Hongf033ecb2020-01-07 18:13:56 -080055 bool update,
56 uint64_t* required_size) override;
Yifan Hong7b3910a2020-03-24 17:47:32 -070057 bool FinishUpdate(bool powerwash_required) override;
Yifan Hong90965502020-02-19 15:22:47 -080058 std::unique_ptr<AbstractAction> GetCleanupPreviousUpdateAction(
59 BootControlInterface* boot_control,
60 PrefsInterface* prefs,
61 CleanupPreviousUpdateActionDelegateInterface* delegate) override;
Yifan Hong012508e2019-07-22 18:30:40 -070062
Yifan Hong6a6d0f12020-03-11 13:20:52 -070063 bool ResetUpdate(PrefsInterface* prefs) override;
64
Tianjie99d570d2020-06-04 14:57:19 -070065 bool ListDynamicPartitionsForSlot(
Tianjie3a55fc22021-02-13 16:02:22 -080066 uint32_t slot,
67 uint32_t current_slot,
68 std::vector<std::string>* partitions) override;
Tianjie99d570d2020-06-04 14:57:19 -070069
Tianjie24f96092020-06-30 12:26:25 -070070 bool VerifyExtentsForUntouchedPartitions(
71 uint32_t source_slot,
72 uint32_t target_slot,
73 const std::vector<std::string>& partitions) override;
74
Tianjie99d570d2020-06-04 14:57:19 -070075 bool GetDeviceDir(std::string* path) override;
76
Yifan Hong3a1a5612019-11-05 16:34:32 -080077 // Return the device for partition |partition_name| at slot |slot|.
78 // |current_slot| should be set to the current active slot.
79 // Note: this function is only used by BootControl*::GetPartitionDevice.
80 // Other callers should prefer BootControl*::GetPartitionDevice over
81 // BootControl*::GetDynamicPartitionControl()->GetPartitionDevice().
Kelvin Zhang91d95fa2020-11-05 13:52:00 -050082 std::optional<PartitionDevice> GetPartitionDevice(
83 const std::string& partition_name,
84 uint32_t slot,
85 uint32_t current_slot,
Kelvin Zhang66a9ebb2021-01-25 13:35:10 -050086 bool not_in_payload);
Kelvin Zhang91d95fa2020-11-05 13:52:00 -050087 // Deprecated, please use GetPartitionDevice(string, uint32_t, uint32_t);
88 // TODO(zhangkelvin) Remove below deprecated APIs.
Yifan Hong3a1a5612019-11-05 16:34:32 -080089 bool GetPartitionDevice(const std::string& partition_name,
90 uint32_t slot,
91 uint32_t current_slot,
Tianjie51a5a392020-06-03 14:39:32 -070092 bool not_in_payload,
93 std::string* device,
94 bool* is_dynamic);
95
96 bool GetPartitionDevice(const std::string& partition_name,
97 uint32_t slot,
98 uint32_t current_slot,
Yifan Hong3a1a5612019-11-05 16:34:32 -080099 std::string* device);
100
Kelvin Zhang34618522020-09-28 09:21:02 -0400101 // Partition name is expected to be unsuffixed. e.g. system, vendor
102 // Return an interface to write to a snapshoted partition.
103 std::unique_ptr<android::snapshot::ISnapshotWriter> OpenCowWriter(
104 const std::string& unsuffixed_partition_name,
105 const std::optional<std::string>& source_path,
106 bool is_append) override;
Kelvin Zhang21a49912021-03-12 14:28:33 -0500107 FileDescriptorPtr OpenCowFd(const std::string& unsuffixed_partition_name,
108 const std::optional<std::string>&,
109 bool is_append = false) override;
Kelvin Zhang34618522020-09-28 09:21:02 -0400110
Kelvin Zhang02fe6622021-11-01 16:37:58 -0700111 bool MapAllPartitions() override;
Kelvin Zhang9d87d6d2020-10-23 17:03:59 -0400112 bool UnmapAllPartitions() override;
113
Kelvin Zhangebd115e2021-03-08 16:10:25 -0500114 bool IsDynamicPartition(const std::string& part_name, uint32_t slot) override;
Kelvin Zhangeb9de162020-11-16 15:47:28 -0500115
Yifan Hongb0cbd392021-02-04 11:11:45 -0800116 bool UpdateUsesSnapshotCompression() override;
117
Kelvin Zhang3fe49642021-10-04 15:35:02 -0700118 std::optional<base::FilePath> GetSuperDevice();
119
Yifan Hong012508e2019-07-22 18:30:40 -0700120 protected:
121 // These functions are exposed for testing.
122
123 // Unmap logical partition on device mapper. This is the reverse operation
124 // of MapPartitionOnDeviceMapper.
125 // Returns true if unmapped successfully.
126 virtual bool UnmapPartitionOnDeviceMapper(
127 const std::string& target_partition_name);
128
Tianjie24f96092020-06-30 12:26:25 -0700129 // Retrieves metadata from |super_device| at slot |slot|.
130 virtual std::unique_ptr<android::fs_mgr::MetadataBuilder> LoadMetadataBuilder(
131 const std::string& super_device, uint32_t slot);
132
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500133 // Retrieves metadata from |super_device| at slot |source_slot|. And
134 // modifies the metadata so that during updates, the metadata can be written
135 // to |target_slot|. In particular, on retrofit devices, the returned
136 // metadata automatically includes block devices at |target_slot|.
Yifan Hong012508e2019-07-22 18:30:40 -0700137 virtual std::unique_ptr<android::fs_mgr::MetadataBuilder> LoadMetadataBuilder(
Yifan Hong6e706b12018-11-09 16:50:51 -0800138 const std::string& super_device,
139 uint32_t source_slot,
Yifan Hong012508e2019-07-22 18:30:40 -0700140 uint32_t target_slot);
141
142 // Write metadata |builder| to |super_device| at slot |target_slot|.
143 virtual bool StoreMetadata(const std::string& super_device,
144 android::fs_mgr::MetadataBuilder* builder,
145 uint32_t target_slot);
Yifan Hong537802d2018-08-15 13:15:42 -0700146
Yifan Hong3a1a5612019-11-05 16:34:32 -0800147 // Map logical partition on device-mapper.
148 // |super_device| is the device path of the physical partition ("super").
149 // |target_partition_name| is the identifier used in metadata; for example,
150 // "vendor_a"
151 // |slot| is the selected slot to mount; for example, 0 for "_a".
152 // Returns true if mapped successfully; if so, |path| is set to the device
153 // path of the mapped logical partition.
154 virtual bool MapPartitionOnDeviceMapper(
155 const std::string& super_device,
156 const std::string& target_partition_name,
157 uint32_t slot,
158 bool force_writable,
159 std::string* path);
160
161 // Return true if a static partition exists at device path |path|.
162 virtual bool DeviceExists(const std::string& path);
163
164 // Returns the current state of the underlying device mapper device
165 // with given name.
166 // One of INVALID, SUSPENDED or ACTIVE.
167 virtual android::dm::DmDeviceState GetState(const std::string& name);
168
169 // Returns the path to the device mapper device node in '/dev' corresponding
170 // to 'name'. If the device does not exist, false is returned, and the path
171 // parameter is not set.
172 virtual bool GetDmDevicePathByName(const std::string& name,
173 std::string* path);
174
Yifan Hong3a1a5612019-11-05 16:34:32 -0800175 // Return the name of the super partition (which stores super partition
176 // metadata) for a given slot.
177 virtual std::string GetSuperPartitionName(uint32_t slot);
178
Yifan Hong6eec9952019-12-04 13:12:01 -0800179 virtual void set_fake_mapped_devices(const std::set<std::string>& fake);
180
Yifan Hongbae27842019-10-24 16:56:12 -0700181 // Allow mock objects to override this to test recovery mode.
182 virtual bool IsRecovery();
183
Yifan Hong29692902020-03-26 12:47:05 -0700184 // Determine path for system_other partition.
185 // |source_slot| should be current slot.
186 // |target_slot| should be "other" slot.
187 // |partition_name_suffix| should be "system" + suffix(|target_slot|).
188 // Return true and set |path| if successful.
189 // Set |path| to empty if no need to erase system_other.
190 // Set |should_unmap| to true if path needs to be unmapped later.
191 //
192 // Note: system_other cannot use GetPartitionDevice or
193 // GetDynamicPartitionDevice because:
194 // - super partition metadata may be loaded from the source slot
195 // - UPDATED flag needs to be check to skip erasing if partition is not
196 // created by flashing tools
197 // - Snapshots from previous update attempts should not be used.
198 virtual bool GetSystemOtherPath(uint32_t source_slot,
199 uint32_t target_slot,
200 const std::string& partition_name_suffix,
201 std::string* path,
202 bool* should_unmap);
203
204 // Returns true if any entry in the fstab file in |path| has AVB enabled,
205 // false if not enabled, and nullopt for any error.
206 virtual std::optional<bool> IsAvbEnabledInFstab(const std::string& path);
207
208 // Returns true if system_other has AVB enabled, false if not enabled, and
209 // nullopt for any error.
210 virtual std::optional<bool> IsAvbEnabledOnSystemOther();
211
212 // Erase system_other partition that may contain system_other.img.
213 // After the update, the content of system_other may be corrupted but with
214 // valid AVB footer. If the update is rolled back and factory data reset is
215 // triggered, system_b fails to be mapped with verity errors (see
216 // b/152444348). Erase the system_other so that mapping system_other is
217 // skipped.
218 virtual bool EraseSystemOtherAvbFooter(uint32_t source_slot,
219 uint32_t target_slot);
220
Yifan Hong302fa702020-04-16 09:48:29 -0700221 // Helper for PreparePartitionsForUpdate. Used for devices with dynamic
222 // partitions updating without snapshots.
223 // If |delete_source| is set, source partitions are deleted before resizing
224 // target partitions (using DeleteSourcePartitions).
225 virtual bool PrepareDynamicPartitionsForUpdate(
226 uint32_t source_slot,
227 uint32_t target_slot,
228 const DeltaArchiveManifest& manifest,
229 bool delete_source);
230
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500231 void SetSourceSlot(uint32_t slot) { source_slot_ = slot; }
232 void SetTargetSlot(uint32_t slot) { target_slot_ = slot; }
233
Yifan Hong537802d2018-08-15 13:15:42 -0700234 private:
Yifan Hongc049f932019-07-23 15:06:05 -0700235 friend class DynamicPartitionControlAndroidTest;
Yifan Hong302fa702020-04-16 09:48:29 -0700236 friend class SnapshotPartitionTestP;
Yifan Hongc049f932019-07-23 15:06:05 -0700237
Yifan Hong8546a712019-03-28 14:42:53 -0700238 bool MapPartitionInternal(const std::string& super_device,
239 const std::string& target_partition_name,
240 uint32_t slot,
241 bool force_writable,
242 std::string* path);
Yifan Hong537802d2018-08-15 13:15:42 -0700243
Yifan Hong8d6df9a2020-08-13 13:59:54 -0700244 // Update |builder| according to |partition_metadata|.
245 // - In Android mode, this is only called when the device
246 // does not have Virtual A/B.
247 // - When sideloading, this maybe called as a fallback path if CoW cannot
248 // be created.
Yifan Hong13d41cb2019-09-16 13:18:22 -0700249 bool UpdatePartitionMetadata(android::fs_mgr::MetadataBuilder* builder,
250 uint32_t target_slot,
251 const DeltaArchiveManifest& manifest);
Yifan Hong012508e2019-07-22 18:30:40 -0700252
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500253 // Helper for PreparePartitionsForUpdate. Used for snapshotted partitions
254 // for Virtual A/B update.
Yifan Hong420db9b2019-07-23 20:50:33 -0700255 bool PrepareSnapshotPartitionsForUpdate(uint32_t source_slot,
256 uint32_t target_slot,
Yifan Hongf033ecb2020-01-07 18:13:56 -0800257 const DeltaArchiveManifest& manifest,
258 uint64_t* required_size);
Yifan Hong420db9b2019-07-23 20:50:33 -0700259
Yifan Hong3a1293a2021-04-16 13:21:20 -0700260 enum SpaceLimit {
261 // Most restricted: if sum(groups) > super / 2, error
262 ERROR_IF_EXCEEDED_HALF_OF_SUPER,
263 // Implies ERROR_IF_EXCEEDED_SUPER; then, if sum(groups) > super / 2, warn
264 WARN_IF_EXCEEDED_HALF_OF_SUPER,
265 // Least restricted: if sum(groups) > super, error
266 ERROR_IF_EXCEEDED_SUPER,
267 };
268 // Helper of CheckSuperPartitionAllocatableSpace. Determine limit for groups
269 // and partitions.
270 SpaceLimit GetSpaceLimit(bool use_snapshot);
271
Tianjie9f4dc7f2021-03-15 16:00:50 -0700272 // Returns true if the allocatable space in super partition is larger than
273 // the size of dynamic partition groups in the manifest.
274 bool CheckSuperPartitionAllocatableSpace(
275 android::fs_mgr::MetadataBuilder* builder,
276 const DeltaArchiveManifest& manifest,
277 bool use_snapshot);
278
Yifan Hong3a1a5612019-11-05 16:34:32 -0800279 enum class DynamicPartitionDeviceStatus {
280 SUCCESS,
281 ERROR,
282 TRY_STATIC,
283 };
284
285 // Return SUCCESS and path in |device| if partition is dynamic.
286 // Return ERROR if any error.
287 // Return TRY_STATIC if caller should resolve the partition as a static
288 // partition instead.
289 DynamicPartitionDeviceStatus GetDynamicPartitionDevice(
290 const base::FilePath& device_dir,
291 const std::string& partition_name_suffix,
292 uint32_t slot,
293 uint32_t current_slot,
Tianjie51a5a392020-06-03 14:39:32 -0700294 bool not_in_payload,
Yifan Hong3a1a5612019-11-05 16:34:32 -0800295 std::string* device);
296
297 // Return true if |partition_name_suffix| is a block device of
298 // super partition metadata slot |slot|.
299 bool IsSuperBlockDevice(const base::FilePath& device_dir,
300 uint32_t current_slot,
301 const std::string& partition_name_suffix);
302
Yifan Hongbae27842019-10-24 16:56:12 -0700303 // If sideloading a full OTA, delete source partitions from |builder|.
304 bool DeleteSourcePartitions(android::fs_mgr::MetadataBuilder* builder,
305 uint32_t source_slot,
306 const DeltaArchiveManifest& manifest);
307
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700308 // Returns true if metadata is expected to be mounted, false otherwise.
309 // Note that it returns false on non-Virtual A/B devices.
310 //
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500311 // Almost all functions of SnapshotManager depends on metadata being
312 // mounted.
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700313 // - In Android mode for Virtual A/B devices, assume it is mounted. If not,
314 // let caller fails when calling into SnapshotManager.
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500315 // - In recovery for Virtual A/B devices, it is possible that metadata is
316 // not
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700317 // formatted, hence it cannot be mounted. Caller should not call into
318 // SnapshotManager.
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500319 // - On non-Virtual A/B devices, updates do not depend on metadata
320 // partition.
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700321 // Caller should not call into SnapshotManager.
322 //
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500323 // This function does NOT mount metadata partition. Use
324 // EnsureMetadataMounted to mount metadata partition.
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700325 bool ExpectMetadataMounted();
326
327 // Ensure /metadata is mounted. Returns true if successful, false otherwise.
328 //
329 // Note that this function returns true on non-Virtual A/B devices without
330 // doing anything.
331 bool EnsureMetadataMounted();
332
Yifan Hongf6f75c22020-07-31 15:20:25 -0700333 // Set boolean flags related to target build. This includes flags like
334 // target_supports_snapshot_ and is_target_dynamic_.
335 bool SetTargetBuildVars(const DeltaArchiveManifest& manifest);
336
Yifan Hong420db9b2019-07-23 20:50:33 -0700337 std::set<std::string> mapped_devices_;
Yifan Hongb38e1af2019-10-17 14:59:22 -0700338 const FeatureFlag dynamic_partitions_;
339 const FeatureFlag virtual_ab_;
Kelvin Zhangda1b3142020-09-24 17:09:02 -0400340 const FeatureFlag virtual_ab_compression_;
Yifan Hongf9cb4492020-04-15 13:00:20 -0700341 std::unique_ptr<android::snapshot::ISnapshotManager> snapshot_;
Yifan Hong2c62c132019-10-24 14:53:40 -0700342 std::unique_ptr<android::snapshot::AutoDevice> metadata_device_;
Yifan Hongf0f4a912019-09-26 17:51:33 -0700343 bool target_supports_snapshot_ = false;
Yifan Hong3a1a5612019-11-05 16:34:32 -0800344 // Whether the target partitions should be loaded as dynamic partitions. Set
345 // by PreparePartitionsForUpdate() per each update.
346 bool is_target_dynamic_ = false;
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500347
Yifan Hong6eec9952019-12-04 13:12:01 -0800348 uint32_t source_slot_ = UINT32_MAX;
349 uint32_t target_slot_ = UINT32_MAX;
Kelvin Zhangebd115e2021-03-08 16:10:25 -0500350 std::vector<std::vector<std::string>> dynamic_partition_list_{2UL};
Yifan Hong420db9b2019-07-23 20:50:33 -0700351
Yifan Hong537802d2018-08-15 13:15:42 -0700352 DISALLOW_COPY_AND_ASSIGN(DynamicPartitionControlAndroid);
353};
354
355} // namespace chromeos_update_engine
356
Amin Hassaniec7bc112020-10-29 16:47:58 -0700357#endif // UPDATE_ENGINE_AOSP_DYNAMIC_PARTITION_CONTROL_ANDROID_H_