blob: a99f75d478375cc0dfd39a9b89c479c109ebf51f [file] [log] [blame]
Jeff Sharkey068c6be2017-09-06 13:47:40 -06001/*
2 * Copyright (C) 2017 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
Jeff Sharkey67b8c492017-09-21 17:08:43 -060017#define ATRACE_TAG ATRACE_TAG_PACKAGE_MANAGER
18
Jeff Sharkey068c6be2017-09-06 13:47:40 -060019#include "VoldNativeService.h"
Jeff Sharkey01a0e7f2017-10-17 16:06:32 -060020#include "Benchmark.h"
Jeff Sharkey2048a282017-06-15 09:59:43 -060021#include "CheckEncryption.h"
22#include "IdleMaint.h"
Jeff Sharkey01a0e7f2017-10-17 16:06:32 -060023#include "MoveStorage.h"
Jeff Sharkey83b559c2017-09-12 16:30:52 -060024#include "Process.h"
Jeff Sharkey2048a282017-06-15 09:59:43 -060025#include "VolumeManager.h"
Jeff Sharkey068c6be2017-09-06 13:47:40 -060026
Jeff Sharkey83b559c2017-09-12 16:30:52 -060027#include "Ext4Crypt.h"
28#include "MetadataCrypt.h"
Paul Crowleyedf7a4e2018-09-18 15:14:18 -070029#include "cryptfs.h"
Jeff Sharkey83b559c2017-09-12 16:30:52 -060030
Jeff Sharkey068c6be2017-09-06 13:47:40 -060031#include <fstream>
Jeff Sharkey01a0e7f2017-10-17 16:06:32 -060032#include <thread>
Jeff Sharkey068c6be2017-09-06 13:47:40 -060033
34#include <android-base/logging.h>
35#include <android-base/stringprintf.h>
36#include <android-base/strings.h>
Paul Crowley3b71fc52017-10-09 10:55:21 -070037#include <ext4_utils/ext4_crypt.h>
Jeff Sharkey11c2d382017-09-11 10:32:01 -060038#include <fs_mgr.h>
Jeff Sharkey068c6be2017-09-06 13:47:40 -060039#include <private/android_filesystem_config.h>
Jeff Sharkey67b8c492017-09-21 17:08:43 -060040#include <utils/Trace.h>
Jeff Sharkey068c6be2017-09-06 13:47:40 -060041
Jeff Sharkey068c6be2017-09-06 13:47:40 -060042using android::base::StringPrintf;
43using std::endl;
44
45namespace android {
46namespace vold {
47
48namespace {
49
50constexpr const char* kDump = "android.permission.DUMP";
51
52static binder::Status ok() {
53 return binder::Status::ok();
54}
55
56static binder::Status exception(uint32_t code, const std::string& msg) {
57 return binder::Status::fromExceptionCode(code, String8(msg.c_str()));
58}
59
Jeff Sharkey9462bdd2017-09-07 15:27:28 -060060static binder::Status error(const std::string& msg) {
61 PLOG(ERROR) << msg;
62 return binder::Status::fromServiceSpecificError(errno, String8(msg.c_str()));
63}
64
Jeff Sharkey83b559c2017-09-12 16:30:52 -060065static binder::Status translate(int status) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -060066 if (status == 0) {
67 return binder::Status::ok();
68 } else {
Jeff Sharkey11c2d382017-09-11 10:32:01 -060069 return binder::Status::fromServiceSpecificError(status);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -060070 }
71}
72
Jeff Sharkey83b559c2017-09-12 16:30:52 -060073static binder::Status translateBool(bool status) {
74 if (status) {
75 return binder::Status::ok();
76 } else {
77 return binder::Status::fromServiceSpecificError(status);
78 }
79}
80
Jeff Sharkey068c6be2017-09-06 13:47:40 -060081binder::Status checkPermission(const char* permission) {
82 pid_t pid;
83 uid_t uid;
84
85 if (checkCallingPermission(String16(permission), reinterpret_cast<int32_t*>(&pid),
Paul Crowleyedf7a4e2018-09-18 15:14:18 -070086 reinterpret_cast<int32_t*>(&uid))) {
Jeff Sharkey068c6be2017-09-06 13:47:40 -060087 return ok();
88 } else {
89 return exception(binder::Status::EX_SECURITY,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -070090 StringPrintf("UID %d / PID %d lacks permission %s", uid, pid, permission));
Jeff Sharkey068c6be2017-09-06 13:47:40 -060091 }
92}
93
94binder::Status checkUid(uid_t expectedUid) {
95 uid_t uid = IPCThreadState::self()->getCallingUid();
96 if (uid == expectedUid || uid == AID_ROOT) {
97 return ok();
98 } else {
99 return exception(binder::Status::EX_SECURITY,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700100 StringPrintf("UID %d is not expected UID %d", uid, expectedUid));
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600101 }
102}
103
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600104binder::Status checkArgumentId(const std::string& id) {
105 if (id.empty()) {
106 return exception(binder::Status::EX_ILLEGAL_ARGUMENT, "Missing ID");
107 }
108 for (const char& c : id) {
109 if (!std::isalnum(c) && c != ':' && c != ',') {
110 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700111 StringPrintf("ID %s is malformed", id.c_str()));
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600112 }
113 }
114 return ok();
115}
116
117binder::Status checkArgumentPath(const std::string& path) {
118 if (path.empty()) {
119 return exception(binder::Status::EX_ILLEGAL_ARGUMENT, "Missing path");
120 }
121 if (path[0] != '/') {
122 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700123 StringPrintf("Path %s is relative", path.c_str()));
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600124 }
Jeff Sharkey01a0e7f2017-10-17 16:06:32 -0600125 if ((path + '/').find("/../") != std::string::npos) {
126 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700127 StringPrintf("Path %s is shady", path.c_str()));
Jeff Sharkey01a0e7f2017-10-17 16:06:32 -0600128 }
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600129 for (const char& c : path) {
130 if (c == '\0' || c == '\n') {
131 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700132 StringPrintf("Path %s is malformed", path.c_str()));
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600133 }
134 }
135 return ok();
136}
137
138binder::Status checkArgumentHex(const std::string& hex) {
139 // Empty hex strings are allowed
140 for (const char& c : hex) {
141 if (!std::isxdigit(c) && c != ':' && c != '-') {
142 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700143 StringPrintf("Hex %s is malformed", hex.c_str()));
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600144 }
145 }
146 return ok();
147}
148
Sudheer Shankacc0df592018-08-02 10:21:42 -0700149binder::Status checkArgumentPackageName(const std::string& packageName) {
150 // This logic is borrowed from PackageParser.java
151 bool hasSep = false;
152 bool front = true;
153
154 for (size_t i = 0; i < packageName.length(); ++i) {
155 char c = packageName[i];
156 if ((c >= 'a' && c <= 'z') || (c >= 'A' && c <= 'Z')) {
157 front = false;
158 continue;
159 }
160 if (!front) {
161 if ((c >= '0' && c <= '9') || c == '_') {
162 continue;
163 }
164 }
165 if (c == '.') {
166 hasSep = true;
167 front = true;
168 continue;
169 }
170 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700171 StringPrintf("Bad package character %c in %s", c, packageName.c_str()));
Sudheer Shankacc0df592018-08-02 10:21:42 -0700172 }
173
174 if (front) {
175 return exception(binder::Status::EX_ILLEGAL_ARGUMENT,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700176 StringPrintf("Missing separator in %s", packageName.c_str()));
Sudheer Shankacc0df592018-08-02 10:21:42 -0700177 }
178
179 return ok();
180}
181
182binder::Status checkArgumentPackageNames(const std::vector<std::string>& packageNames) {
183 for (size_t i = 0; i < packageNames.size(); ++i) {
184 binder::Status status = checkArgumentPackageName(packageNames[i]);
185 if (!status.isOk()) {
186 return status;
187 }
188 }
189 return ok();
190}
191
192binder::Status checkArgumentSandboxId(const std::string& sandboxId) {
193 // sandboxId will be in either the format shared:<shared-user-id> or <package-name>
194 // and <shared-user-id> name has same requirements as <package-name>.
195 std::size_t nameStartIndex = 0;
Greg Kaisere3f59322018-08-06 06:16:29 -0700196 if (android::base::StartsWith(sandboxId, "shared:")) {
197 nameStartIndex = 7; // len("shared:")
Sudheer Shankacc0df592018-08-02 10:21:42 -0700198 }
199 return checkArgumentPackageName(sandboxId.substr(nameStartIndex));
200}
201
202binder::Status checkArgumentSandboxIds(const std::vector<std::string>& sandboxIds) {
203 for (size_t i = 0; i < sandboxIds.size(); ++i) {
204 binder::Status status = checkArgumentSandboxId(sandboxIds[i]);
205 if (!status.isOk()) {
206 return status;
207 }
208 }
209 return ok();
210}
211
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700212#define ENFORCE_UID(uid) \
213 { \
214 binder::Status status = checkUid((uid)); \
215 if (!status.isOk()) { \
216 return status; \
217 } \
218 }
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600219
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700220#define CHECK_ARGUMENT_ID(id) \
221 { \
222 binder::Status status = checkArgumentId((id)); \
223 if (!status.isOk()) { \
224 return status; \
225 } \
226 }
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600227
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700228#define CHECK_ARGUMENT_PATH(path) \
229 { \
230 binder::Status status = checkArgumentPath((path)); \
231 if (!status.isOk()) { \
232 return status; \
233 } \
234 }
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600235
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700236#define CHECK_ARGUMENT_HEX(hex) \
237 { \
238 binder::Status status = checkArgumentHex((hex)); \
239 if (!status.isOk()) { \
240 return status; \
241 } \
242 }
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600243
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700244#define CHECK_ARGUMENT_PACKAGE_NAMES(packageNames) \
245 { \
246 binder::Status status = checkArgumentPackageNames((packageNames)); \
247 if (!status.isOk()) { \
248 return status; \
249 } \
250 }
Sudheer Shankacc0df592018-08-02 10:21:42 -0700251
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700252#define CHECK_ARGUMENT_SANDBOX_IDS(sandboxIds) \
253 { \
254 binder::Status status = checkArgumentSandboxIds((sandboxIds)); \
255 if (!status.isOk()) { \
256 return status; \
257 } \
258 }
Sudheer Shankacc0df592018-08-02 10:21:42 -0700259
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700260#define CHECK_ARGUMENT_PACKAGE_NAME(packageName) \
261 { \
262 binder::Status status = checkArgumentPackageName((packageName)); \
263 if (!status.isOk()) { \
264 return status; \
265 } \
266 }
Sudheer Shankac7562092018-08-24 10:20:56 -0700267
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700268#define CHECK_ARGUMENT_SANDBOX_ID(sandboxId) \
269 { \
270 binder::Status status = checkArgumentSandboxId((sandboxId)); \
271 if (!status.isOk()) { \
272 return status; \
273 } \
274 }
Sudheer Shankac7562092018-08-24 10:20:56 -0700275
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700276#define ACQUIRE_LOCK \
Jeff Sharkey67b8c492017-09-21 17:08:43 -0600277 std::lock_guard<std::mutex> lock(VolumeManager::Instance()->getLock()); \
278 ATRACE_CALL();
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600279
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700280#define ACQUIRE_CRYPT_LOCK \
Jeff Sharkey67b8c492017-09-21 17:08:43 -0600281 std::lock_guard<std::mutex> lock(VolumeManager::Instance()->getCryptLock()); \
282 ATRACE_CALL();
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600283
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600284} // namespace
285
286status_t VoldNativeService::start() {
287 IPCThreadState::self()->disableBackgroundScheduling(true);
288 status_t ret = BinderService<VoldNativeService>::publish();
289 if (ret != android::OK) {
290 return ret;
291 }
292 sp<ProcessState> ps(ProcessState::self());
293 ps->startThreadPool();
294 ps->giveThreadPoolName();
295 return android::OK;
296}
297
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700298status_t VoldNativeService::dump(int fd, const Vector<String16>& /* args */) {
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600299 auto out = std::fstream(StringPrintf("/proc/self/fd/%d", fd));
300 const binder::Status dump_permission = checkPermission(kDump);
301 if (!dump_permission.isOk()) {
302 out << dump_permission.toString8() << endl;
303 return PERMISSION_DENIED;
304 }
305
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600306 ACQUIRE_LOCK;
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600307 out << "vold is happy!" << endl;
308 out.flush();
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600309 return NO_ERROR;
310}
311
Jeff Sharkey814e9d32017-09-13 11:49:44 -0600312binder::Status VoldNativeService::setListener(
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700313 const android::sp<android::os::IVoldListener>& listener) {
Jeff Sharkey814e9d32017-09-13 11:49:44 -0600314 ENFORCE_UID(AID_SYSTEM);
315 ACQUIRE_LOCK;
316
317 VolumeManager::Instance()->setListener(listener);
318 return ok();
319}
320
Jeff Sharkeycbe69fc2017-09-15 16:50:28 -0600321binder::Status VoldNativeService::monitor() {
322 ENFORCE_UID(AID_SYSTEM);
323
324 // Simply acquire/release each lock for watchdog
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700325 { ACQUIRE_LOCK; }
326 { ACQUIRE_CRYPT_LOCK; }
Jeff Sharkeycbe69fc2017-09-15 16:50:28 -0600327
328 return ok();
329}
330
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600331binder::Status VoldNativeService::reset() {
332 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600333 ACQUIRE_LOCK;
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600334
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600335 return translate(VolumeManager::Instance()->reset());
336}
337
338binder::Status VoldNativeService::shutdown() {
339 ENFORCE_UID(AID_SYSTEM);
340 ACQUIRE_LOCK;
341
342 return translate(VolumeManager::Instance()->shutdown());
343}
344
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600345binder::Status VoldNativeService::onUserAdded(int32_t userId, int32_t userSerial) {
346 ENFORCE_UID(AID_SYSTEM);
347 ACQUIRE_LOCK;
348
349 return translate(VolumeManager::Instance()->onUserAdded(userId, userSerial));
350}
351
352binder::Status VoldNativeService::onUserRemoved(int32_t userId) {
353 ENFORCE_UID(AID_SYSTEM);
354 ACQUIRE_LOCK;
355
356 return translate(VolumeManager::Instance()->onUserRemoved(userId));
357}
358
Sudheer Shankaebaad1c2018-07-31 16:39:59 -0700359binder::Status VoldNativeService::onUserStarted(int32_t userId,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700360 const std::vector<std::string>& packageNames) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600361 ENFORCE_UID(AID_SYSTEM);
Sudheer Shankacc0df592018-08-02 10:21:42 -0700362 CHECK_ARGUMENT_PACKAGE_NAMES(packageNames);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600363 ACQUIRE_LOCK;
364
Sudheer Shankaebaad1c2018-07-31 16:39:59 -0700365 return translate(VolumeManager::Instance()->onUserStarted(userId, packageNames));
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600366}
367
368binder::Status VoldNativeService::onUserStopped(int32_t userId) {
369 ENFORCE_UID(AID_SYSTEM);
370 ACQUIRE_LOCK;
371
372 return translate(VolumeManager::Instance()->onUserStopped(userId));
373}
374
Sudheer Shankad484aa92018-07-31 10:07:34 -0700375binder::Status VoldNativeService::addAppIds(const std::vector<std::string>& packageNames,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700376 const std::vector<int32_t>& appIds) {
Sudheer Shankad484aa92018-07-31 10:07:34 -0700377 ENFORCE_UID(AID_SYSTEM);
Sudheer Shankacc0df592018-08-02 10:21:42 -0700378 CHECK_ARGUMENT_PACKAGE_NAMES(packageNames);
Sudheer Shankad484aa92018-07-31 10:07:34 -0700379 ACQUIRE_LOCK;
380
381 return translate(VolumeManager::Instance()->addAppIds(packageNames, appIds));
382}
383
Sudheer Shankad484aa92018-07-31 10:07:34 -0700384binder::Status VoldNativeService::addSandboxIds(const std::vector<int32_t>& appIds,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700385 const std::vector<std::string>& sandboxIds) {
Sudheer Shankad484aa92018-07-31 10:07:34 -0700386 ENFORCE_UID(AID_SYSTEM);
Sudheer Shankacc0df592018-08-02 10:21:42 -0700387 CHECK_ARGUMENT_SANDBOX_IDS(sandboxIds);
Sudheer Shankad484aa92018-07-31 10:07:34 -0700388 ACQUIRE_LOCK;
389
390 return translate(VolumeManager::Instance()->addSandboxIds(appIds, sandboxIds));
391}
392
Jeff Sharkey401b2602017-12-14 22:15:20 -0700393binder::Status VoldNativeService::onSecureKeyguardStateChanged(bool isShowing) {
394 ENFORCE_UID(AID_SYSTEM);
395 ACQUIRE_LOCK;
396
397 return translate(VolumeManager::Instance()->onSecureKeyguardStateChanged(isShowing));
398}
399
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600400binder::Status VoldNativeService::partition(const std::string& diskId, int32_t partitionType,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700401 int32_t ratio) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600402 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600403 CHECK_ARGUMENT_ID(diskId);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600404 ACQUIRE_LOCK;
405
406 auto disk = VolumeManager::Instance()->findDisk(diskId);
407 if (disk == nullptr) {
408 return error("Failed to find disk " + diskId);
409 }
410 switch (partitionType) {
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700411 case PARTITION_TYPE_PUBLIC:
412 return translate(disk->partitionPublic());
413 case PARTITION_TYPE_PRIVATE:
414 return translate(disk->partitionPrivate());
415 case PARTITION_TYPE_MIXED:
416 return translate(disk->partitionMixed(ratio));
417 default:
418 return error("Unknown type " + std::to_string(partitionType));
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600419 }
420}
421
Jeff Sharkey3ce18252017-10-24 11:08:45 -0600422binder::Status VoldNativeService::forgetPartition(const std::string& partGuid,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700423 const std::string& fsUuid) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600424 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600425 CHECK_ARGUMENT_HEX(partGuid);
Jeff Sharkey3ce18252017-10-24 11:08:45 -0600426 CHECK_ARGUMENT_HEX(fsUuid);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600427 ACQUIRE_LOCK;
428
Jeff Sharkey3ce18252017-10-24 11:08:45 -0600429 return translate(VolumeManager::Instance()->forgetPartition(partGuid, fsUuid));
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600430}
431
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600432binder::Status VoldNativeService::mount(const std::string& volId, int32_t mountFlags,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700433 int32_t mountUserId) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600434 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600435 CHECK_ARGUMENT_ID(volId);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600436 ACQUIRE_LOCK;
437
438 auto vol = VolumeManager::Instance()->findVolume(volId);
439 if (vol == nullptr) {
440 return error("Failed to find volume " + volId);
441 }
442
443 vol->setMountFlags(mountFlags);
444 vol->setMountUserId(mountUserId);
445
446 int res = vol->mount();
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600447 if ((mountFlags & MOUNT_FLAG_PRIMARY) != 0) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600448 VolumeManager::Instance()->setPrimary(vol);
449 }
450 return translate(res);
451}
452
453binder::Status VoldNativeService::unmount(const std::string& volId) {
454 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600455 CHECK_ARGUMENT_ID(volId);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600456 ACQUIRE_LOCK;
457
458 auto vol = VolumeManager::Instance()->findVolume(volId);
459 if (vol == nullptr) {
460 return error("Failed to find volume " + volId);
461 }
462 return translate(vol->unmount());
463}
464
465binder::Status VoldNativeService::format(const std::string& volId, const std::string& fsType) {
466 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600467 CHECK_ARGUMENT_ID(volId);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600468 ACQUIRE_LOCK;
469
470 auto vol = VolumeManager::Instance()->findVolume(volId);
471 if (vol == nullptr) {
472 return error("Failed to find volume " + volId);
473 }
474 return translate(vol->format(fsType));
475}
476
Jeff Sharkey2048a282017-06-15 09:59:43 -0600477static binder::Status pathForVolId(const std::string& volId, std::string* path) {
Jeff Sharkey52f7a912017-09-15 12:57:44 -0600478 if (volId == "private" || volId == "null") {
Jeff Sharkey2048a282017-06-15 09:59:43 -0600479 *path = "/data";
Jeff Sharkey52f7a912017-09-15 12:57:44 -0600480 } else {
481 auto vol = VolumeManager::Instance()->findVolume(volId);
482 if (vol == nullptr) {
483 return error("Failed to find volume " + volId);
484 }
485 if (vol->getType() != VolumeBase::Type::kPrivate) {
486 return error("Volume " + volId + " not private");
487 }
488 if (vol->getState() != VolumeBase::State::kMounted) {
489 return error("Volume " + volId + " not mounted");
490 }
Jeff Sharkey2048a282017-06-15 09:59:43 -0600491 *path = vol->getPath();
492 if (path->empty()) {
493 return error("Volume " + volId + " missing path");
494 }
Jeff Sharkey52f7a912017-09-15 12:57:44 -0600495 }
Jeff Sharkey2048a282017-06-15 09:59:43 -0600496 return ok();
497}
Jeff Sharkey52f7a912017-09-15 12:57:44 -0600498
Jeff Sharkey2048a282017-06-15 09:59:43 -0600499binder::Status VoldNativeService::benchmark(
500 const std::string& volId, const android::sp<android::os::IVoldTaskListener>& listener) {
501 ENFORCE_UID(AID_SYSTEM);
502 CHECK_ARGUMENT_ID(volId);
503 ACQUIRE_LOCK;
504
505 std::string path;
506 auto status = pathForVolId(volId, &path);
507 if (!status.isOk()) return status;
Jeff Sharkey52f7a912017-09-15 12:57:44 -0600508
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700509 std::thread([=]() { android::vold::Benchmark(path, listener); }).detach();
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600510 return ok();
511}
512
Jeff Sharkey2048a282017-06-15 09:59:43 -0600513binder::Status VoldNativeService::checkEncryption(const std::string& volId) {
514 ENFORCE_UID(AID_SYSTEM);
515 CHECK_ARGUMENT_ID(volId);
516 ACQUIRE_LOCK;
517
518 std::string path;
519 auto status = pathForVolId(volId, &path);
520 if (!status.isOk()) return status;
521 return translate(android::vold::CheckEncryption(path));
522}
523
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700524binder::Status VoldNativeService::moveStorage(
525 const std::string& fromVolId, const std::string& toVolId,
526 const android::sp<android::os::IVoldTaskListener>& listener) {
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600527 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600528 CHECK_ARGUMENT_ID(fromVolId);
529 CHECK_ARGUMENT_ID(toVolId);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600530 ACQUIRE_LOCK;
531
532 auto fromVol = VolumeManager::Instance()->findVolume(fromVolId);
533 auto toVol = VolumeManager::Instance()->findVolume(toVolId);
534 if (fromVol == nullptr) {
535 return error("Failed to find volume " + fromVolId);
536 } else if (toVol == nullptr) {
537 return error("Failed to find volume " + toVolId);
538 }
Jeff Sharkey01a0e7f2017-10-17 16:06:32 -0600539
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700540 std::thread([=]() { android::vold::MoveStorage(fromVol, toVol, listener); }).detach();
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600541 return ok();
542}
543
544binder::Status VoldNativeService::remountUid(int32_t uid, int32_t remountMode) {
545 ENFORCE_UID(AID_SYSTEM);
546 ACQUIRE_LOCK;
547
548 std::string tmp;
549 switch (remountMode) {
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700550 case REMOUNT_MODE_NONE:
551 tmp = "none";
552 break;
553 case REMOUNT_MODE_DEFAULT:
554 tmp = "default";
555 break;
556 case REMOUNT_MODE_READ:
557 tmp = "read";
558 break;
559 case REMOUNT_MODE_WRITE:
560 tmp = "write";
561 break;
562 default:
563 return error("Unknown mode " + std::to_string(remountMode));
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600564 }
565 return translate(VolumeManager::Instance()->remountUid(uid, tmp));
566}
567
568binder::Status VoldNativeService::mkdirs(const std::string& path) {
569 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600570 CHECK_ARGUMENT_PATH(path);
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600571 ACQUIRE_LOCK;
572
Jeff Sharkey3472e522017-10-06 18:02:53 -0600573 return translate(VolumeManager::Instance()->mkdirs(path));
Jeff Sharkey9462bdd2017-09-07 15:27:28 -0600574}
575
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600576binder::Status VoldNativeService::createObb(const std::string& sourcePath,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700577 const std::string& sourceKey, int32_t ownerGid,
578 std::string* _aidl_return) {
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600579 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600580 CHECK_ARGUMENT_PATH(sourcePath);
581 CHECK_ARGUMENT_HEX(sourceKey);
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600582 ACQUIRE_LOCK;
583
584 return translate(
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700585 VolumeManager::Instance()->createObb(sourcePath, sourceKey, ownerGid, _aidl_return));
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600586}
587
588binder::Status VoldNativeService::destroyObb(const std::string& volId) {
589 ENFORCE_UID(AID_SYSTEM);
Jeff Sharkeyec4fda22017-09-12 13:19:24 -0600590 CHECK_ARGUMENT_ID(volId);
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600591 ACQUIRE_LOCK;
592
593 return translate(VolumeManager::Instance()->destroyObb(volId));
594}
595
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700596binder::Status VoldNativeService::fstrim(
597 int32_t fstrimFlags, const android::sp<android::os::IVoldTaskListener>& listener) {
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600598 ENFORCE_UID(AID_SYSTEM);
599 ACQUIRE_LOCK;
600
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700601 std::thread([=]() { android::vold::Trim(listener); }).detach();
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600602 return ok();
603}
604
Jin Qiana370c142017-10-17 15:41:45 -0700605binder::Status VoldNativeService::runIdleMaint(
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700606 const android::sp<android::os::IVoldTaskListener>& listener) {
Jin Qiana370c142017-10-17 15:41:45 -0700607 ENFORCE_UID(AID_SYSTEM);
608 ACQUIRE_LOCK;
609
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700610 std::thread([=]() { android::vold::RunIdleMaint(listener); }).detach();
Jin Qiana370c142017-10-17 15:41:45 -0700611 return ok();
612}
613
614binder::Status VoldNativeService::abortIdleMaint(
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700615 const android::sp<android::os::IVoldTaskListener>& listener) {
Jin Qiana370c142017-10-17 15:41:45 -0700616 ENFORCE_UID(AID_SYSTEM);
617 ACQUIRE_LOCK;
618
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700619 std::thread([=]() { android::vold::AbortIdleMaint(listener); }).detach();
Jin Qiana370c142017-10-17 15:41:45 -0700620 return ok();
621}
622
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600623binder::Status VoldNativeService::mountAppFuse(int32_t uid, int32_t pid, int32_t mountId,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700624 android::base::unique_fd* _aidl_return) {
Jeff Sharkey11c2d382017-09-11 10:32:01 -0600625 ENFORCE_UID(AID_SYSTEM);
626 ACQUIRE_LOCK;
627
628 return translate(VolumeManager::Instance()->mountAppFuse(uid, pid, mountId, _aidl_return));
629}
630
631binder::Status VoldNativeService::unmountAppFuse(int32_t uid, int32_t pid, int32_t mountId) {
632 ENFORCE_UID(AID_SYSTEM);
633 ACQUIRE_LOCK;
634
635 return translate(VolumeManager::Instance()->unmountAppFuse(uid, pid, mountId));
636}
637
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600638binder::Status VoldNativeService::fdeCheckPassword(const std::string& password) {
639 ENFORCE_UID(AID_SYSTEM);
640 ACQUIRE_CRYPT_LOCK;
641
642 return translate(cryptfs_check_passwd(password.c_str()));
643}
644
645binder::Status VoldNativeService::fdeRestart() {
646 ENFORCE_UID(AID_SYSTEM);
647 ACQUIRE_CRYPT_LOCK;
648
649 // Spawn as thread so init can issue commands back to vold without
650 // causing deadlock, usually as a result of prep_data_fs.
651 std::thread(&cryptfs_restart).detach();
652 return ok();
653}
654
655binder::Status VoldNativeService::fdeComplete(int32_t* _aidl_return) {
656 ENFORCE_UID(AID_SYSTEM);
657 ACQUIRE_CRYPT_LOCK;
658
659 *_aidl_return = cryptfs_crypto_complete();
660 return ok();
661}
662
663static int fdeEnableInternal(int32_t passwordType, const std::string& password,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700664 int32_t encryptionFlags) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600665 bool noUi = (encryptionFlags & VoldNativeService::ENCRYPTION_FLAG_NO_UI) != 0;
666
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600667 for (int tries = 0; tries < 2; ++tries) {
668 int rc;
669 if (passwordType == VoldNativeService::PASSWORD_TYPE_DEFAULT) {
Paul Lawrence7ee87cf2017-12-22 10:12:06 -0800670 rc = cryptfs_enable_default(noUi);
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600671 } else {
Paul Lawrence7ee87cf2017-12-22 10:12:06 -0800672 rc = cryptfs_enable(passwordType, password.c_str(), noUi);
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600673 }
674
675 if (rc == 0) {
676 return 0;
677 } else if (tries == 0) {
Jeff Sharkey3472e522017-10-06 18:02:53 -0600678 KillProcessesWithOpenFiles(DATA_MNT_POINT, SIGKILL);
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600679 }
680 }
681
682 return -1;
683}
684
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700685binder::Status VoldNativeService::fdeEnable(int32_t passwordType, const std::string& password,
686 int32_t encryptionFlags) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600687 ENFORCE_UID(AID_SYSTEM);
688 ACQUIRE_CRYPT_LOCK;
689
Paul Crowley0fd26262018-01-30 09:48:19 -0800690 LOG(DEBUG) << "fdeEnable(" << passwordType << ", *, " << encryptionFlags << ")";
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600691 if (e4crypt_is_native()) {
Paul Crowley0fd26262018-01-30 09:48:19 -0800692 LOG(ERROR) << "e4crypt_is_native, fdeEnable invalid";
693 return error("e4crypt_is_native, fdeEnable invalid");
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600694 }
Paul Crowley0fd26262018-01-30 09:48:19 -0800695 LOG(DEBUG) << "!e4crypt_is_native, spawning fdeEnableInternal";
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600696
697 // Spawn as thread so init can issue commands back to vold without
698 // causing deadlock, usually as a result of prep_data_fs.
699 std::thread(&fdeEnableInternal, passwordType, password, encryptionFlags).detach();
700 return ok();
701}
702
703binder::Status VoldNativeService::fdeChangePassword(int32_t passwordType,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700704 const std::string& password) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600705 ENFORCE_UID(AID_SYSTEM);
706 ACQUIRE_CRYPT_LOCK;
707
708 return translate(cryptfs_changepw(passwordType, password.c_str()));
709}
710
711binder::Status VoldNativeService::fdeVerifyPassword(const std::string& password) {
712 ENFORCE_UID(AID_SYSTEM);
713 ACQUIRE_CRYPT_LOCK;
714
715 return translate(cryptfs_verify_passwd(password.c_str()));
716}
717
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700718binder::Status VoldNativeService::fdeGetField(const std::string& key, std::string* _aidl_return) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600719 ENFORCE_UID(AID_SYSTEM);
720 ACQUIRE_CRYPT_LOCK;
721
722 char buf[PROPERTY_VALUE_MAX];
723 if (cryptfs_getfield(key.c_str(), buf, sizeof(buf)) != CRYPTO_GETFIELD_OK) {
724 return error(StringPrintf("Failed to read field %s", key.c_str()));
725 } else {
726 *_aidl_return = buf;
727 return ok();
728 }
729}
730
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700731binder::Status VoldNativeService::fdeSetField(const std::string& key, const std::string& value) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600732 ENFORCE_UID(AID_SYSTEM);
733 ACQUIRE_CRYPT_LOCK;
734
735 return translate(cryptfs_setfield(key.c_str(), value.c_str()));
736}
737
738binder::Status VoldNativeService::fdeGetPasswordType(int32_t* _aidl_return) {
739 ENFORCE_UID(AID_SYSTEM);
740 ACQUIRE_CRYPT_LOCK;
741
742 *_aidl_return = cryptfs_get_password_type();
743 return ok();
744}
745
746binder::Status VoldNativeService::fdeGetPassword(std::string* _aidl_return) {
747 ENFORCE_UID(AID_SYSTEM);
748 ACQUIRE_CRYPT_LOCK;
749
750 const char* res = cryptfs_get_password();
751 if (res != nullptr) {
752 *_aidl_return = res;
753 }
754 return ok();
755}
756
757binder::Status VoldNativeService::fdeClearPassword() {
758 ENFORCE_UID(AID_SYSTEM);
759 ACQUIRE_CRYPT_LOCK;
760
761 cryptfs_clear_password();
762 return ok();
763}
764
765binder::Status VoldNativeService::fbeEnable() {
766 ENFORCE_UID(AID_SYSTEM);
767 ACQUIRE_CRYPT_LOCK;
768
769 return translateBool(e4crypt_initialize_global_de());
770}
771
772binder::Status VoldNativeService::mountDefaultEncrypted() {
773 ENFORCE_UID(AID_SYSTEM);
774 ACQUIRE_CRYPT_LOCK;
775
Paul Crowley0fd26262018-01-30 09:48:19 -0800776 if (!e4crypt_is_native()) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600777 // Spawn as thread so init can issue commands back to vold without
778 // causing deadlock, usually as a result of prep_data_fs.
779 std::thread(&cryptfs_mount_default_encrypted).detach();
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600780 }
Paul Crowley0fd26262018-01-30 09:48:19 -0800781 return ok();
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600782}
783
784binder::Status VoldNativeService::initUser0() {
785 ENFORCE_UID(AID_SYSTEM);
786 ACQUIRE_CRYPT_LOCK;
787
788 return translateBool(e4crypt_init_user0());
789}
790
791binder::Status VoldNativeService::isConvertibleToFbe(bool* _aidl_return) {
792 ENFORCE_UID(AID_SYSTEM);
793 ACQUIRE_CRYPT_LOCK;
794
795 *_aidl_return = cryptfs_isConvertibleToFBE() != 0;
796 return ok();
797}
798
Paul Crowley0fd26262018-01-30 09:48:19 -0800799binder::Status VoldNativeService::mountFstab(const std::string& mountPoint) {
800 ENFORCE_UID(AID_SYSTEM);
801 ACQUIRE_LOCK;
802
803 return translateBool(e4crypt_mount_metadata_encrypted(mountPoint, false));
804}
805
806binder::Status VoldNativeService::encryptFstab(const std::string& mountPoint) {
807 ENFORCE_UID(AID_SYSTEM);
808 ACQUIRE_LOCK;
809
810 return translateBool(e4crypt_mount_metadata_encrypted(mountPoint, true));
811}
812
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700813binder::Status VoldNativeService::createUserKey(int32_t userId, int32_t userSerial, bool ephemeral) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600814 ENFORCE_UID(AID_SYSTEM);
815 ACQUIRE_CRYPT_LOCK;
816
817 return translateBool(e4crypt_vold_create_user_key(userId, userSerial, ephemeral));
818}
819
820binder::Status VoldNativeService::destroyUserKey(int32_t userId) {
821 ENFORCE_UID(AID_SYSTEM);
822 ACQUIRE_CRYPT_LOCK;
823
824 return translateBool(e4crypt_destroy_user_key(userId));
825}
826
827binder::Status VoldNativeService::addUserKeyAuth(int32_t userId, int32_t userSerial,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700828 const std::string& token,
829 const std::string& secret) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600830 ENFORCE_UID(AID_SYSTEM);
831 ACQUIRE_CRYPT_LOCK;
832
Paul Crowley3b71fc52017-10-09 10:55:21 -0700833 return translateBool(e4crypt_add_user_key_auth(userId, userSerial, token, secret));
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600834}
835
836binder::Status VoldNativeService::fixateNewestUserKeyAuth(int32_t userId) {
837 ENFORCE_UID(AID_SYSTEM);
838 ACQUIRE_CRYPT_LOCK;
839
840 return translateBool(e4crypt_fixate_newest_user_key_auth(userId));
841}
842
843binder::Status VoldNativeService::unlockUserKey(int32_t userId, int32_t userSerial,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700844 const std::string& token,
845 const std::string& secret) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600846 ENFORCE_UID(AID_SYSTEM);
847 ACQUIRE_CRYPT_LOCK;
848
Paul Crowley3b71fc52017-10-09 10:55:21 -0700849 return translateBool(e4crypt_unlock_user_key(userId, userSerial, token, secret));
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600850}
851
852binder::Status VoldNativeService::lockUserKey(int32_t userId) {
853 ENFORCE_UID(AID_SYSTEM);
854 ACQUIRE_CRYPT_LOCK;
855
856 return translateBool(e4crypt_lock_user_key(userId));
857}
858
859binder::Status VoldNativeService::prepareUserStorage(const std::unique_ptr<std::string>& uuid,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700860 int32_t userId, int32_t userSerial,
861 int32_t flags) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600862 ENFORCE_UID(AID_SYSTEM);
Paul Crowley3b71fc52017-10-09 10:55:21 -0700863 std::string empty_string = "";
864 auto uuid_ = uuid ? *uuid : empty_string;
Paul Crowley06f762d2017-10-16 10:59:51 -0700865 CHECK_ARGUMENT_HEX(uuid_);
866
867 ACQUIRE_CRYPT_LOCK;
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600868 return translateBool(e4crypt_prepare_user_storage(uuid_, userId, userSerial, flags));
869}
870
871binder::Status VoldNativeService::destroyUserStorage(const std::unique_ptr<std::string>& uuid,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700872 int32_t userId, int32_t flags) {
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600873 ENFORCE_UID(AID_SYSTEM);
Paul Crowley3b71fc52017-10-09 10:55:21 -0700874 std::string empty_string = "";
875 auto uuid_ = uuid ? *uuid : empty_string;
Paul Crowley06f762d2017-10-16 10:59:51 -0700876 CHECK_ARGUMENT_HEX(uuid_);
877
878 ACQUIRE_CRYPT_LOCK;
Jeff Sharkey83b559c2017-09-12 16:30:52 -0600879 return translateBool(e4crypt_destroy_user_storage(uuid_, userId, flags));
880}
881
Sudheer Shankac7562092018-08-24 10:20:56 -0700882binder::Status VoldNativeService::mountExternalStorageForApp(const std::string& packageName,
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700883 int32_t appId,
884 const std::string& sandboxId,
885 int32_t userId) {
Sudheer Shankac7562092018-08-24 10:20:56 -0700886 ENFORCE_UID(AID_SYSTEM);
887 CHECK_ARGUMENT_PACKAGE_NAME(packageName);
888 CHECK_ARGUMENT_SANDBOX_ID(sandboxId);
889 ACQUIRE_LOCK;
890
Paul Crowleyedf7a4e2018-09-18 15:14:18 -0700891 return translate(VolumeManager::Instance()->mountExternalStorageForApp(packageName, appId,
892 sandboxId, userId));
Sudheer Shankac7562092018-08-24 10:20:56 -0700893}
894
Jeff Sharkey068c6be2017-09-06 13:47:40 -0600895} // namespace vold
896} // namespace android