blob: 9851a995f83b9a633d32e22c2d619d3ed4455cd7 [file] [log] [blame]
Yifan Hong537802d2018-08-15 13:15:42 -07001//
2// Copyright (C) 2018 The Android Open Source Project
3//
4// Licensed under the Apache License, Version 2.0 (the "License");
5// you may not use this file except in compliance with the License.
6// You may obtain a copy of the License at
7//
8// http://www.apache.org/licenses/LICENSE-2.0
9//
10// Unless required by applicable law or agreed to in writing, software
11// distributed under the License is distributed on an "AS IS" BASIS,
12// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13// See the License for the specific language governing permissions and
14// limitations under the License.
15//
16
Amin Hassaniec7bc112020-10-29 16:47:58 -070017#ifndef UPDATE_ENGINE_AOSP_DYNAMIC_PARTITION_CONTROL_ANDROID_H_
18#define UPDATE_ENGINE_AOSP_DYNAMIC_PARTITION_CONTROL_ANDROID_H_
Yifan Hong537802d2018-08-15 13:15:42 -070019
Yifan Hong537802d2018-08-15 13:15:42 -070020#include <memory>
21#include <set>
22#include <string>
Kelvin Zhang91ad6622021-03-01 13:46:17 -050023#include <string_view>
Kelvin Zhangff5380b2022-03-16 13:35:04 -070024#include <array>
Yifan Hong537802d2018-08-15 13:15:42 -070025
Yifan Hong3a1a5612019-11-05 16:34:32 -080026#include <base/files/file_util.h>
Yifan Hong2c62c132019-10-24 14:53:40 -070027#include <libsnapshot/auto_device.h>
Yifan Hong420db9b2019-07-23 20:50:33 -070028#include <libsnapshot/snapshot.h>
Kelvin Zhang34618522020-09-28 09:21:02 -040029#include <libsnapshot/snapshot_writer.h>
Yifan Hong420db9b2019-07-23 20:50:33 -070030
Yifan Hong15726b92019-11-05 19:06:48 -080031#include "update_engine/common/dynamic_partition_control_interface.h"
32
Yifan Hong537802d2018-08-15 13:15:42 -070033namespace chromeos_update_engine {
34
35class DynamicPartitionControlAndroid : public DynamicPartitionControlInterface {
36 public:
Kelvin Zhang91ad6622021-03-01 13:46:17 -050037 // A directory where all partitions mapped by VABC is expected to be found.
38 // Per earlier discussion with VAB team, this directory is unlikely to change.
39 // So we declare it as a constant here.
40 static constexpr std::string_view VABC_DEVICE_DIR = "/dev/block/mapper/";
Kelvin Zhangebd115e2021-03-08 16:10:25 -050041 explicit DynamicPartitionControlAndroid(uint32_t source_slot);
Yifan Hong537802d2018-08-15 13:15:42 -070042 ~DynamicPartitionControlAndroid();
Kelvin Zhang91d95fa2020-11-05 13:52:00 -050043
Yifan Hong186bb682019-07-23 14:04:39 -070044 FeatureFlag GetDynamicPartitionsFeatureFlag() override;
Yifan Hong413d5722019-07-23 14:21:09 -070045 FeatureFlag GetVirtualAbFeatureFlag() override;
Kelvin Zhangda1b3142020-09-24 17:09:02 -040046 FeatureFlag GetVirtualAbCompressionFeatureFlag() override;
Kelvin Zhang1c4b9812022-04-06 17:29:00 -070047 FeatureFlag GetVirtualAbCompressionXorFeatureFlag() override;
David Andersone35b4382022-03-08 23:18:29 -080048 FeatureFlag GetVirtualAbUserspaceSnapshotsFeatureFlag() override;
Yifan Hongf5261562020-03-10 10:28:10 -070049 bool OptimizeOperation(const std::string& partition_name,
50 const InstallOperation& operation,
51 InstallOperation* optimized) override;
Yifan Hong537802d2018-08-15 13:15:42 -070052 void Cleanup() override;
Yifan Hong012508e2019-07-22 18:30:40 -070053
Yifan Hongf0f4a912019-09-26 17:51:33 -070054 bool PreparePartitionsForUpdate(uint32_t source_slot,
55 uint32_t target_slot,
56 const DeltaArchiveManifest& manifest,
Yifan Hongf033ecb2020-01-07 18:13:56 -080057 bool update,
58 uint64_t* required_size) override;
Yifan Hong7b3910a2020-03-24 17:47:32 -070059 bool FinishUpdate(bool powerwash_required) override;
Yifan Hong90965502020-02-19 15:22:47 -080060 std::unique_ptr<AbstractAction> GetCleanupPreviousUpdateAction(
61 BootControlInterface* boot_control,
62 PrefsInterface* prefs,
63 CleanupPreviousUpdateActionDelegateInterface* delegate) override;
Yifan Hong012508e2019-07-22 18:30:40 -070064
Yifan Hong6a6d0f12020-03-11 13:20:52 -070065 bool ResetUpdate(PrefsInterface* prefs) override;
66
Tianjie99d570d2020-06-04 14:57:19 -070067 bool ListDynamicPartitionsForSlot(
Tianjie3a55fc22021-02-13 16:02:22 -080068 uint32_t slot,
69 uint32_t current_slot,
70 std::vector<std::string>* partitions) override;
Tianjie99d570d2020-06-04 14:57:19 -070071
Tianjie24f96092020-06-30 12:26:25 -070072 bool VerifyExtentsForUntouchedPartitions(
73 uint32_t source_slot,
74 uint32_t target_slot,
75 const std::vector<std::string>& partitions) override;
76
Tianjie99d570d2020-06-04 14:57:19 -070077 bool GetDeviceDir(std::string* path) override;
78
Yifan Hong3a1a5612019-11-05 16:34:32 -080079 // Return the device for partition |partition_name| at slot |slot|.
80 // |current_slot| should be set to the current active slot.
81 // Note: this function is only used by BootControl*::GetPartitionDevice.
82 // Other callers should prefer BootControl*::GetPartitionDevice over
83 // BootControl*::GetDynamicPartitionControl()->GetPartitionDevice().
Kelvin Zhang91d95fa2020-11-05 13:52:00 -050084 std::optional<PartitionDevice> GetPartitionDevice(
85 const std::string& partition_name,
86 uint32_t slot,
87 uint32_t current_slot,
Kelvin Zhang66a9ebb2021-01-25 13:35:10 -050088 bool not_in_payload);
Kelvin Zhang91d95fa2020-11-05 13:52:00 -050089 // Deprecated, please use GetPartitionDevice(string, uint32_t, uint32_t);
90 // TODO(zhangkelvin) Remove below deprecated APIs.
Yifan Hong3a1a5612019-11-05 16:34:32 -080091 bool GetPartitionDevice(const std::string& partition_name,
92 uint32_t slot,
93 uint32_t current_slot,
Tianjie51a5a392020-06-03 14:39:32 -070094 bool not_in_payload,
95 std::string* device,
96 bool* is_dynamic);
97
98 bool GetPartitionDevice(const std::string& partition_name,
99 uint32_t slot,
100 uint32_t current_slot,
Yifan Hong3a1a5612019-11-05 16:34:32 -0800101 std::string* device);
102
Kelvin Zhang34618522020-09-28 09:21:02 -0400103 // Partition name is expected to be unsuffixed. e.g. system, vendor
104 // Return an interface to write to a snapshoted partition.
105 std::unique_ptr<android::snapshot::ISnapshotWriter> OpenCowWriter(
106 const std::string& unsuffixed_partition_name,
107 const std::optional<std::string>& source_path,
108 bool is_append) override;
Kelvin Zhang1a0ed712022-01-26 16:09:05 -0800109 std::unique_ptr<FileDescriptor> OpenCowFd(
110 const std::string& unsuffixed_partition_name,
111 const std::optional<std::string>&,
112 bool is_append = false) override;
Kelvin Zhang34618522020-09-28 09:21:02 -0400113
Kelvin Zhang02fe6622021-11-01 16:37:58 -0700114 bool MapAllPartitions() override;
Kelvin Zhang9d87d6d2020-10-23 17:03:59 -0400115 bool UnmapAllPartitions() override;
116
Kelvin Zhangebd115e2021-03-08 16:10:25 -0500117 bool IsDynamicPartition(const std::string& part_name, uint32_t slot) override;
Kelvin Zhangeb9de162020-11-16 15:47:28 -0500118
Yifan Hongb0cbd392021-02-04 11:11:45 -0800119 bool UpdateUsesSnapshotCompression() override;
120
Kelvin Zhang3fe49642021-10-04 15:35:02 -0700121 std::optional<base::FilePath> GetSuperDevice();
122
Yifan Hong012508e2019-07-22 18:30:40 -0700123 protected:
124 // These functions are exposed for testing.
125
126 // Unmap logical partition on device mapper. This is the reverse operation
127 // of MapPartitionOnDeviceMapper.
128 // Returns true if unmapped successfully.
129 virtual bool UnmapPartitionOnDeviceMapper(
130 const std::string& target_partition_name);
131
Tianjie24f96092020-06-30 12:26:25 -0700132 // Retrieves metadata from |super_device| at slot |slot|.
133 virtual std::unique_ptr<android::fs_mgr::MetadataBuilder> LoadMetadataBuilder(
134 const std::string& super_device, uint32_t slot);
135
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500136 // Retrieves metadata from |super_device| at slot |source_slot|. And
137 // modifies the metadata so that during updates, the metadata can be written
138 // to |target_slot|. In particular, on retrofit devices, the returned
139 // metadata automatically includes block devices at |target_slot|.
Yifan Hong012508e2019-07-22 18:30:40 -0700140 virtual std::unique_ptr<android::fs_mgr::MetadataBuilder> LoadMetadataBuilder(
Yifan Hong6e706b12018-11-09 16:50:51 -0800141 const std::string& super_device,
142 uint32_t source_slot,
Yifan Hong012508e2019-07-22 18:30:40 -0700143 uint32_t target_slot);
144
145 // Write metadata |builder| to |super_device| at slot |target_slot|.
146 virtual bool StoreMetadata(const std::string& super_device,
147 android::fs_mgr::MetadataBuilder* builder,
148 uint32_t target_slot);
Yifan Hong537802d2018-08-15 13:15:42 -0700149
Yifan Hong3a1a5612019-11-05 16:34:32 -0800150 // Map logical partition on device-mapper.
151 // |super_device| is the device path of the physical partition ("super").
152 // |target_partition_name| is the identifier used in metadata; for example,
153 // "vendor_a"
154 // |slot| is the selected slot to mount; for example, 0 for "_a".
155 // Returns true if mapped successfully; if so, |path| is set to the device
156 // path of the mapped logical partition.
157 virtual bool MapPartitionOnDeviceMapper(
158 const std::string& super_device,
159 const std::string& target_partition_name,
160 uint32_t slot,
161 bool force_writable,
162 std::string* path);
163
164 // Return true if a static partition exists at device path |path|.
165 virtual bool DeviceExists(const std::string& path);
166
167 // Returns the current state of the underlying device mapper device
168 // with given name.
169 // One of INVALID, SUSPENDED or ACTIVE.
170 virtual android::dm::DmDeviceState GetState(const std::string& name);
171
172 // Returns the path to the device mapper device node in '/dev' corresponding
173 // to 'name'. If the device does not exist, false is returned, and the path
174 // parameter is not set.
175 virtual bool GetDmDevicePathByName(const std::string& name,
176 std::string* path);
177
Yifan Hong3a1a5612019-11-05 16:34:32 -0800178 // Return the name of the super partition (which stores super partition
179 // metadata) for a given slot.
180 virtual std::string GetSuperPartitionName(uint32_t slot);
181
Yifan Hong6eec9952019-12-04 13:12:01 -0800182 virtual void set_fake_mapped_devices(const std::set<std::string>& fake);
183
Yifan Hongbae27842019-10-24 16:56:12 -0700184 // Allow mock objects to override this to test recovery mode.
185 virtual bool IsRecovery();
186
Yifan Hong29692902020-03-26 12:47:05 -0700187 // Determine path for system_other partition.
188 // |source_slot| should be current slot.
189 // |target_slot| should be "other" slot.
190 // |partition_name_suffix| should be "system" + suffix(|target_slot|).
191 // Return true and set |path| if successful.
192 // Set |path| to empty if no need to erase system_other.
193 // Set |should_unmap| to true if path needs to be unmapped later.
194 //
195 // Note: system_other cannot use GetPartitionDevice or
196 // GetDynamicPartitionDevice because:
197 // - super partition metadata may be loaded from the source slot
198 // - UPDATED flag needs to be check to skip erasing if partition is not
199 // created by flashing tools
200 // - Snapshots from previous update attempts should not be used.
201 virtual bool GetSystemOtherPath(uint32_t source_slot,
202 uint32_t target_slot,
203 const std::string& partition_name_suffix,
204 std::string* path,
205 bool* should_unmap);
206
207 // Returns true if any entry in the fstab file in |path| has AVB enabled,
208 // false if not enabled, and nullopt for any error.
209 virtual std::optional<bool> IsAvbEnabledInFstab(const std::string& path);
210
211 // Returns true if system_other has AVB enabled, false if not enabled, and
212 // nullopt for any error.
213 virtual std::optional<bool> IsAvbEnabledOnSystemOther();
214
215 // Erase system_other partition that may contain system_other.img.
216 // After the update, the content of system_other may be corrupted but with
217 // valid AVB footer. If the update is rolled back and factory data reset is
218 // triggered, system_b fails to be mapped with verity errors (see
219 // b/152444348). Erase the system_other so that mapping system_other is
220 // skipped.
221 virtual bool EraseSystemOtherAvbFooter(uint32_t source_slot,
222 uint32_t target_slot);
223
Yifan Hong302fa702020-04-16 09:48:29 -0700224 // Helper for PreparePartitionsForUpdate. Used for devices with dynamic
225 // partitions updating without snapshots.
226 // If |delete_source| is set, source partitions are deleted before resizing
227 // target partitions (using DeleteSourcePartitions).
228 virtual bool PrepareDynamicPartitionsForUpdate(
229 uint32_t source_slot,
230 uint32_t target_slot,
231 const DeltaArchiveManifest& manifest,
232 bool delete_source);
233
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500234 void SetSourceSlot(uint32_t slot) { source_slot_ = slot; }
235 void SetTargetSlot(uint32_t slot) { target_slot_ = slot; }
236
Yifan Hong537802d2018-08-15 13:15:42 -0700237 private:
Yifan Hongc049f932019-07-23 15:06:05 -0700238 friend class DynamicPartitionControlAndroidTest;
Yifan Hong302fa702020-04-16 09:48:29 -0700239 friend class SnapshotPartitionTestP;
Yifan Hongc049f932019-07-23 15:06:05 -0700240
Yifan Hong8546a712019-03-28 14:42:53 -0700241 bool MapPartitionInternal(const std::string& super_device,
242 const std::string& target_partition_name,
243 uint32_t slot,
244 bool force_writable,
245 std::string* path);
Yifan Hong537802d2018-08-15 13:15:42 -0700246
Yifan Hong8d6df9a2020-08-13 13:59:54 -0700247 // Update |builder| according to |partition_metadata|.
248 // - In Android mode, this is only called when the device
249 // does not have Virtual A/B.
250 // - When sideloading, this maybe called as a fallback path if CoW cannot
251 // be created.
Yifan Hong13d41cb2019-09-16 13:18:22 -0700252 bool UpdatePartitionMetadata(android::fs_mgr::MetadataBuilder* builder,
253 uint32_t target_slot,
254 const DeltaArchiveManifest& manifest);
Yifan Hong012508e2019-07-22 18:30:40 -0700255
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500256 // Helper for PreparePartitionsForUpdate. Used for snapshotted partitions
257 // for Virtual A/B update.
Yifan Hong420db9b2019-07-23 20:50:33 -0700258 bool PrepareSnapshotPartitionsForUpdate(uint32_t source_slot,
259 uint32_t target_slot,
Yifan Hongf033ecb2020-01-07 18:13:56 -0800260 const DeltaArchiveManifest& manifest,
261 uint64_t* required_size);
Yifan Hong420db9b2019-07-23 20:50:33 -0700262
Yifan Hong3a1293a2021-04-16 13:21:20 -0700263 enum SpaceLimit {
264 // Most restricted: if sum(groups) > super / 2, error
265 ERROR_IF_EXCEEDED_HALF_OF_SUPER,
266 // Implies ERROR_IF_EXCEEDED_SUPER; then, if sum(groups) > super / 2, warn
267 WARN_IF_EXCEEDED_HALF_OF_SUPER,
268 // Least restricted: if sum(groups) > super, error
269 ERROR_IF_EXCEEDED_SUPER,
270 };
271 // Helper of CheckSuperPartitionAllocatableSpace. Determine limit for groups
272 // and partitions.
273 SpaceLimit GetSpaceLimit(bool use_snapshot);
274
Tianjie9f4dc7f2021-03-15 16:00:50 -0700275 // Returns true if the allocatable space in super partition is larger than
276 // the size of dynamic partition groups in the manifest.
277 bool CheckSuperPartitionAllocatableSpace(
278 android::fs_mgr::MetadataBuilder* builder,
279 const DeltaArchiveManifest& manifest,
280 bool use_snapshot);
281
Yifan Hong3a1a5612019-11-05 16:34:32 -0800282 enum class DynamicPartitionDeviceStatus {
283 SUCCESS,
284 ERROR,
285 TRY_STATIC,
286 };
287
288 // Return SUCCESS and path in |device| if partition is dynamic.
289 // Return ERROR if any error.
290 // Return TRY_STATIC if caller should resolve the partition as a static
291 // partition instead.
292 DynamicPartitionDeviceStatus GetDynamicPartitionDevice(
293 const base::FilePath& device_dir,
294 const std::string& partition_name_suffix,
295 uint32_t slot,
296 uint32_t current_slot,
Tianjie51a5a392020-06-03 14:39:32 -0700297 bool not_in_payload,
Yifan Hong3a1a5612019-11-05 16:34:32 -0800298 std::string* device);
299
300 // Return true if |partition_name_suffix| is a block device of
301 // super partition metadata slot |slot|.
302 bool IsSuperBlockDevice(const base::FilePath& device_dir,
303 uint32_t current_slot,
304 const std::string& partition_name_suffix);
305
Yifan Hongbae27842019-10-24 16:56:12 -0700306 // If sideloading a full OTA, delete source partitions from |builder|.
307 bool DeleteSourcePartitions(android::fs_mgr::MetadataBuilder* builder,
308 uint32_t source_slot,
309 const DeltaArchiveManifest& manifest);
310
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700311 // Returns true if metadata is expected to be mounted, false otherwise.
312 // Note that it returns false on non-Virtual A/B devices.
313 //
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500314 // Almost all functions of SnapshotManager depends on metadata being
315 // mounted.
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700316 // - In Android mode for Virtual A/B devices, assume it is mounted. If not,
317 // let caller fails when calling into SnapshotManager.
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500318 // - In recovery for Virtual A/B devices, it is possible that metadata is
319 // not
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700320 // formatted, hence it cannot be mounted. Caller should not call into
321 // SnapshotManager.
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500322 // - On non-Virtual A/B devices, updates do not depend on metadata
323 // partition.
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700324 // Caller should not call into SnapshotManager.
325 //
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500326 // This function does NOT mount metadata partition. Use
327 // EnsureMetadataMounted to mount metadata partition.
Yifan Hong4d7c5eb2020-04-03 11:31:50 -0700328 bool ExpectMetadataMounted();
329
330 // Ensure /metadata is mounted. Returns true if successful, false otherwise.
331 //
332 // Note that this function returns true on non-Virtual A/B devices without
333 // doing anything.
334 bool EnsureMetadataMounted();
335
Yifan Hongf6f75c22020-07-31 15:20:25 -0700336 // Set boolean flags related to target build. This includes flags like
337 // target_supports_snapshot_ and is_target_dynamic_.
338 bool SetTargetBuildVars(const DeltaArchiveManifest& manifest);
339
Yifan Hong420db9b2019-07-23 20:50:33 -0700340 std::set<std::string> mapped_devices_;
Yifan Hongb38e1af2019-10-17 14:59:22 -0700341 const FeatureFlag dynamic_partitions_;
342 const FeatureFlag virtual_ab_;
Kelvin Zhangda1b3142020-09-24 17:09:02 -0400343 const FeatureFlag virtual_ab_compression_;
Kelvin Zhang1c4b9812022-04-06 17:29:00 -0700344 const FeatureFlag virtual_ab_compression_xor_;
David Andersone35b4382022-03-08 23:18:29 -0800345 const FeatureFlag virtual_ab_userspace_snapshots_;
Yifan Hongf9cb4492020-04-15 13:00:20 -0700346 std::unique_ptr<android::snapshot::ISnapshotManager> snapshot_;
Yifan Hong2c62c132019-10-24 14:53:40 -0700347 std::unique_ptr<android::snapshot::AutoDevice> metadata_device_;
Yifan Hongf0f4a912019-09-26 17:51:33 -0700348 bool target_supports_snapshot_ = false;
Yifan Hong3a1a5612019-11-05 16:34:32 -0800349 // Whether the target partitions should be loaded as dynamic partitions. Set
350 // by PreparePartitionsForUpdate() per each update.
351 bool is_target_dynamic_ = false;
Kelvin Zhang91d95fa2020-11-05 13:52:00 -0500352
Yifan Hong6eec9952019-12-04 13:12:01 -0800353 uint32_t source_slot_ = UINT32_MAX;
354 uint32_t target_slot_ = UINT32_MAX;
Kelvin Zhangff5380b2022-03-16 13:35:04 -0700355 // We assume that there's only 2 slots, A and B. This assumption is unlikely
356 // to change in the future. And certaintly won't change at runtime.
357 std::array<std::vector<std::string>, 2> dynamic_partition_list_{};
Yifan Hong420db9b2019-07-23 20:50:33 -0700358
Yifan Hong537802d2018-08-15 13:15:42 -0700359 DISALLOW_COPY_AND_ASSIGN(DynamicPartitionControlAndroid);
360};
361
362} // namespace chromeos_update_engine
363
Amin Hassaniec7bc112020-10-29 16:47:58 -0700364#endif // UPDATE_ENGINE_AOSP_DYNAMIC_PARTITION_CONTROL_ANDROID_H_