blob: 3c8d3552d4aa620dfb5fff80adceba5ae851b085 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
65 self.search_path = os.path.realpath(os.path.join(exec_path, '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070072 self.public_key_suffix = ".x509.pem"
73 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070074 # use otatools built boot_signer by default
75 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070076 self.boot_signer_args = []
77 self.verity_signer_path = None
78 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.verbose = False
80 self.tempfiles = []
81 self.device_specific = None
82 self.extras = {}
83 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070084 self.source_info_dict = None
85 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070086 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070087 # Stash size cannot exceed cache_size * threshold.
88 self.cache_size = None
89 self.stash_threshold = 0.8
Yifan Hong30910932019-10-25 20:36:55 -070090 self.logfile = None
Dan Albert8b72aef2015-03-23 19:13:21 -070091
92
93OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070094
Tao Bao71197512018-10-11 14:08:45 -070095# The block size that's used across the releasetools scripts.
96BLOCK_SIZE = 4096
97
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080098# Values for "certificate" in apkcerts that mean special things.
99SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
100
Tao Bao5cc0abb2019-03-21 10:18:05 -0700101# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
102# that system_other is not in the list because we don't want to include its
103# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900104AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700105 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800106
Tao Bao08c190f2019-06-03 23:07:58 -0700107# Chained VBMeta partitions.
108AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
109
Tianjie Xu861f4132018-09-12 11:49:33 -0700110# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900111PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700112
113
Tianjie Xu209db462016-05-24 17:34:52 -0700114class ErrorCode(object):
115 """Define error_codes for failures that happen during the actual
116 update package installation.
117
118 Error codes 0-999 are reserved for failures before the package
119 installation (i.e. low battery, package verification failure).
120 Detailed code in 'bootable/recovery/error_code.h' """
121
122 SYSTEM_VERIFICATION_FAILURE = 1000
123 SYSTEM_UPDATE_FAILURE = 1001
124 SYSTEM_UNEXPECTED_CONTENTS = 1002
125 SYSTEM_NONZERO_CONTENTS = 1003
126 SYSTEM_RECOVER_FAILURE = 1004
127 VENDOR_VERIFICATION_FAILURE = 2000
128 VENDOR_UPDATE_FAILURE = 2001
129 VENDOR_UNEXPECTED_CONTENTS = 2002
130 VENDOR_NONZERO_CONTENTS = 2003
131 VENDOR_RECOVER_FAILURE = 2004
132 OEM_PROP_MISMATCH = 3000
133 FINGERPRINT_MISMATCH = 3001
134 THUMBPRINT_MISMATCH = 3002
135 OLDER_BUILD = 3003
136 DEVICE_MISMATCH = 3004
137 BAD_PATCH_FILE = 3005
138 INSUFFICIENT_CACHE_SPACE = 3006
139 TUNE_PARTITION_FAILURE = 3007
140 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800141
Tao Bao80921982018-03-21 21:02:19 -0700142
Dan Albert8b72aef2015-03-23 19:13:21 -0700143class ExternalError(RuntimeError):
144 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700145
146
Tao Bao32fcdab2018-10-12 10:30:39 -0700147def InitLogging():
148 DEFAULT_LOGGING_CONFIG = {
149 'version': 1,
150 'disable_existing_loggers': False,
151 'formatters': {
152 'standard': {
153 'format':
154 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
155 'datefmt': '%Y-%m-%d %H:%M:%S',
156 },
157 },
158 'handlers': {
159 'default': {
160 'class': 'logging.StreamHandler',
161 'formatter': 'standard',
Yifan Hong30910932019-10-25 20:36:55 -0700162 'level': 'WARNING',
Tao Bao32fcdab2018-10-12 10:30:39 -0700163 },
164 },
165 'loggers': {
166 '': {
167 'handlers': ['default'],
Tao Bao32fcdab2018-10-12 10:30:39 -0700168 'propagate': True,
Yifan Hong30910932019-10-25 20:36:55 -0700169 'level': 'INFO',
Tao Bao32fcdab2018-10-12 10:30:39 -0700170 }
171 }
172 }
173 env_config = os.getenv('LOGGING_CONFIG')
174 if env_config:
175 with open(env_config) as f:
176 config = json.load(f)
177 else:
178 config = DEFAULT_LOGGING_CONFIG
179
180 # Increase the logging level for verbose mode.
181 if OPTIONS.verbose:
Yifan Hong30910932019-10-25 20:36:55 -0700182 config = copy.deepcopy(config)
183 config['handlers']['default']['level'] = 'INFO'
184
185 if OPTIONS.logfile:
186 config = copy.deepcopy(config)
187 config['handlers']['logfile'] = {
188 'class': 'logging.FileHandler',
189 'formatter': 'standard',
190 'level': 'INFO',
191 'mode': 'w',
192 'filename': OPTIONS.logfile,
193 }
194 config['loggers']['']['handlers'].append('logfile')
Tao Bao32fcdab2018-10-12 10:30:39 -0700195
196 logging.config.dictConfig(config)
197
198
Tao Bao39451582017-05-04 11:10:47 -0700199def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700200 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700201
Tao Bao73dd4f42018-10-04 16:25:33 -0700202 Args:
203 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700204 verbose: Whether the commands should be shown. Default to the global
205 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700206 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
207 stdin, etc. stdout and stderr will default to subprocess.PIPE and
208 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800209 universal_newlines will default to True, as most of the users in
210 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700211
212 Returns:
213 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700214 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700215 if 'stdout' not in kwargs and 'stderr' not in kwargs:
216 kwargs['stdout'] = subprocess.PIPE
217 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800218 if 'universal_newlines' not in kwargs:
219 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700220 # Don't log any if caller explicitly says so.
221 if verbose != False:
222 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700223 return subprocess.Popen(args, **kwargs)
224
225
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800226def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800227 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800228
229 Args:
230 args: The command represented as a list of strings.
231 verbose: Whether the commands should be shown. Default to the global
232 verbosity if unspecified.
233 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
234 stdin, etc. stdout and stderr will default to subprocess.PIPE and
235 subprocess.STDOUT respectively unless caller specifies any of them.
236
Bill Peckham889b0c62019-02-21 18:53:37 -0800237 Raises:
238 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800239 """
240 proc = Run(args, verbose=verbose, **kwargs)
241 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800242
243 if proc.returncode != 0:
244 raise ExternalError(
245 "Failed to run command '{}' (exit code {})".format(
246 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800247
248
Tao Bao986ee862018-10-04 15:46:16 -0700249def RunAndCheckOutput(args, verbose=None, **kwargs):
250 """Runs the given command and returns the output.
251
252 Args:
253 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700254 verbose: Whether the commands should be shown. Default to the global
255 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700256 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
257 stdin, etc. stdout and stderr will default to subprocess.PIPE and
258 subprocess.STDOUT respectively unless caller specifies any of them.
259
260 Returns:
261 The output string.
262
263 Raises:
264 ExternalError: On non-zero exit from the command.
265 """
Tao Bao986ee862018-10-04 15:46:16 -0700266 proc = Run(args, verbose=verbose, **kwargs)
267 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800268 if output is None:
269 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700270 # Don't log any if caller explicitly says so.
271 if verbose != False:
272 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700273 if proc.returncode != 0:
274 raise ExternalError(
275 "Failed to run command '{}' (exit code {}):\n{}".format(
276 args, proc.returncode, output))
277 return output
278
279
Tao Baoc765cca2018-01-31 17:32:40 -0800280def RoundUpTo4K(value):
281 rounded_up = value + 4095
282 return rounded_up - (rounded_up % 4096)
283
284
Ying Wang7e6d4e42010-12-13 16:25:36 -0800285def CloseInheritedPipes():
286 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
287 before doing other work."""
288 if platform.system() != "Darwin":
289 return
290 for d in range(3, 1025):
291 try:
292 stat = os.fstat(d)
293 if stat is not None:
294 pipebit = stat[0] & 0x1000
295 if pipebit != 0:
296 os.close(d)
297 except OSError:
298 pass
299
300
Tao Bao1c320f82019-10-04 23:25:12 -0700301class BuildInfo(object):
302 """A class that holds the information for a given build.
303
304 This class wraps up the property querying for a given source or target build.
305 It abstracts away the logic of handling OEM-specific properties, and caches
306 the commonly used properties such as fingerprint.
307
308 There are two types of info dicts: a) build-time info dict, which is generated
309 at build time (i.e. included in a target_files zip); b) OEM info dict that is
310 specified at package generation time (via command line argument
311 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
312 having "oem_fingerprint_properties" in build-time info dict), all the queries
313 would be answered based on build-time info dict only. Otherwise if using
314 OEM-specific properties, some of them will be calculated from two info dicts.
315
316 Users can query properties similarly as using a dict() (e.g. info['fstab']),
317 or to query build properties via GetBuildProp() or GetVendorBuildProp().
318
319 Attributes:
320 info_dict: The build-time info dict.
321 is_ab: Whether it's a build that uses A/B OTA.
322 oem_dicts: A list of OEM dicts.
323 oem_props: A list of OEM properties that should be read from OEM dicts; None
324 if the build doesn't use any OEM-specific property.
325 fingerprint: The fingerprint of the build, which would be calculated based
326 on OEM properties if applicable.
327 device: The device name, which could come from OEM dicts if applicable.
328 """
329
330 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
331 "ro.product.manufacturer", "ro.product.model",
332 "ro.product.name"]
333 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER = ["product", "odm", "vendor",
334 "system_ext", "system"]
335
Tao Bao3ed35d32019-10-07 20:48:48 -0700336 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700337 """Initializes a BuildInfo instance with the given dicts.
338
339 Note that it only wraps up the given dicts, without making copies.
340
341 Arguments:
342 info_dict: The build-time info dict.
343 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
344 that it always uses the first dict to calculate the fingerprint or the
345 device name. The rest would be used for asserting OEM properties only
346 (e.g. one package can be installed on one of these devices).
347
348 Raises:
349 ValueError: On invalid inputs.
350 """
351 self.info_dict = info_dict
352 self.oem_dicts = oem_dicts
353
354 self._is_ab = info_dict.get("ab_update") == "true"
355 self._oem_props = info_dict.get("oem_fingerprint_properties")
356
357 if self._oem_props:
358 assert oem_dicts, "OEM source required for this build"
359
360 # These two should be computed only after setting self._oem_props.
361 self._device = self.GetOemProperty("ro.product.device")
362 self._fingerprint = self.CalculateFingerprint()
363
364 # Sanity check the build fingerprint.
365 if (' ' in self._fingerprint or
366 any(ord(ch) > 127 for ch in self._fingerprint)):
367 raise ValueError(
368 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
369 '3.2.2. Build Parameters.'.format(self._fingerprint))
370
371 @property
372 def is_ab(self):
373 return self._is_ab
374
375 @property
376 def device(self):
377 return self._device
378
379 @property
380 def fingerprint(self):
381 return self._fingerprint
382
383 @property
384 def vendor_fingerprint(self):
385 return self._fingerprint_of("vendor")
386
387 @property
388 def product_fingerprint(self):
389 return self._fingerprint_of("product")
390
391 @property
392 def odm_fingerprint(self):
393 return self._fingerprint_of("odm")
394
395 def _fingerprint_of(self, partition):
396 if partition + ".build.prop" not in self.info_dict:
397 return None
398 build_prop = self.info_dict[partition + ".build.prop"]
399 if "ro." + partition + ".build.fingerprint" in build_prop:
400 return build_prop["ro." + partition + ".build.fingerprint"]
401 if "ro." + partition + ".build.thumbprint" in build_prop:
402 return build_prop["ro." + partition + ".build.thumbprint"]
403 return None
404
405 @property
406 def oem_props(self):
407 return self._oem_props
408
409 def __getitem__(self, key):
410 return self.info_dict[key]
411
412 def __setitem__(self, key, value):
413 self.info_dict[key] = value
414
415 def get(self, key, default=None):
416 return self.info_dict.get(key, default)
417
418 def items(self):
419 return self.info_dict.items()
420
421 def GetBuildProp(self, prop):
422 """Returns the inquired build property."""
423 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
424 return self._ResolveRoProductBuildProp(prop)
425
426 try:
427 return self.info_dict.get("build.prop", {})[prop]
428 except KeyError:
429 raise ExternalError("couldn't find %s in build.prop" % (prop,))
430
431 def _ResolveRoProductBuildProp(self, prop):
432 """Resolves the inquired ro.product.* build property"""
433 prop_val = self.info_dict.get("build.prop", {}).get(prop)
434 if prop_val:
435 return prop_val
436
437 source_order_val = self.info_dict.get("build.prop", {}).get(
438 "ro.product.property_source_order")
439 if source_order_val:
440 source_order = source_order_val.split(",")
441 else:
442 source_order = BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
443
444 # Check that all sources in ro.product.property_source_order are valid
445 if any([x not in BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
446 for x in source_order]):
447 raise ExternalError(
448 "Invalid ro.product.property_source_order '{}'".format(source_order))
449
450 for source in source_order:
451 source_prop = prop.replace(
452 "ro.product", "ro.product.{}".format(source), 1)
453 prop_val = self.info_dict.get(
454 "{}.build.prop".format(source), {}).get(source_prop)
455 if prop_val:
456 return prop_val
457
458 raise ExternalError("couldn't resolve {}".format(prop))
459
460 def GetVendorBuildProp(self, prop):
461 """Returns the inquired vendor build property."""
462 try:
463 return self.info_dict.get("vendor.build.prop", {})[prop]
464 except KeyError:
465 raise ExternalError(
466 "couldn't find %s in vendor.build.prop" % (prop,))
467
468 def GetOemProperty(self, key):
469 if self.oem_props is not None and key in self.oem_props:
470 return self.oem_dicts[0][key]
471 return self.GetBuildProp(key)
472
473 def CalculateFingerprint(self):
474 if self.oem_props is None:
475 try:
476 return self.GetBuildProp("ro.build.fingerprint")
477 except ExternalError:
478 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
479 self.GetBuildProp("ro.product.brand"),
480 self.GetBuildProp("ro.product.name"),
481 self.GetBuildProp("ro.product.device"),
482 self.GetBuildProp("ro.build.version.release"),
483 self.GetBuildProp("ro.build.id"),
484 self.GetBuildProp("ro.build.version.incremental"),
485 self.GetBuildProp("ro.build.type"),
486 self.GetBuildProp("ro.build.tags"))
487 return "%s/%s/%s:%s" % (
488 self.GetOemProperty("ro.product.brand"),
489 self.GetOemProperty("ro.product.name"),
490 self.GetOemProperty("ro.product.device"),
491 self.GetBuildProp("ro.build.thumbprint"))
492
493 def WriteMountOemScript(self, script):
494 assert self.oem_props is not None
495 recovery_mount_options = self.info_dict.get("recovery_mount_options")
496 script.Mount("/oem", recovery_mount_options)
497
498 def WriteDeviceAssertions(self, script, oem_no_mount):
499 # Read the property directly if not using OEM properties.
500 if not self.oem_props:
501 script.AssertDevice(self.device)
502 return
503
504 # Otherwise assert OEM properties.
505 if not self.oem_dicts:
506 raise ExternalError(
507 "No OEM file provided to answer expected assertions")
508
509 for prop in self.oem_props.split():
510 values = []
511 for oem_dict in self.oem_dicts:
512 if prop in oem_dict:
513 values.append(oem_dict[prop])
514 if not values:
515 raise ExternalError(
516 "The OEM file is missing the property %s" % (prop,))
517 script.AssertOemProperty(prop, values, oem_no_mount)
518
519
Tao Bao410ad8b2018-08-24 12:08:38 -0700520def LoadInfoDict(input_file, repacking=False):
521 """Loads the key/value pairs from the given input target_files.
522
523 It reads `META/misc_info.txt` file in the target_files input, does sanity
524 checks and returns the parsed key/value pairs for to the given build. It's
525 usually called early when working on input target_files files, e.g. when
526 generating OTAs, or signing builds. Note that the function may be called
527 against an old target_files file (i.e. from past dessert releases). So the
528 property parsing needs to be backward compatible.
529
530 In a `META/misc_info.txt`, a few properties are stored as links to the files
531 in the PRODUCT_OUT directory. It works fine with the build system. However,
532 they are no longer available when (re)generating images from target_files zip.
533 When `repacking` is True, redirect these properties to the actual files in the
534 unzipped directory.
535
536 Args:
537 input_file: The input target_files file, which could be an open
538 zipfile.ZipFile instance, or a str for the dir that contains the files
539 unzipped from a target_files file.
540 repacking: Whether it's trying repack an target_files file after loading the
541 info dict (default: False). If so, it will rewrite a few loaded
542 properties (e.g. selinux_fc, root_dir) to point to the actual files in
543 target_files file. When doing repacking, `input_file` must be a dir.
544
545 Returns:
546 A dict that contains the parsed key/value pairs.
547
548 Raises:
549 AssertionError: On invalid input arguments.
550 ValueError: On malformed input values.
551 """
552 if repacking:
553 assert isinstance(input_file, str), \
554 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700555
Doug Zongkerc9253822014-02-04 12:17:58 -0800556 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700557 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800558 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800559 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700560 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800561 try:
562 with open(path) as f:
563 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700564 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800565 if e.errno == errno.ENOENT:
566 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800567
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700568 try:
Michael Runge6e836112014-04-15 17:40:21 -0700569 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700570 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700571 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700572
Tao Bao410ad8b2018-08-24 12:08:38 -0700573 if "recovery_api_version" not in d:
574 raise ValueError("Failed to find 'recovery_api_version'")
575 if "fstab_version" not in d:
576 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800577
Tao Bao410ad8b2018-08-24 12:08:38 -0700578 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700579 # "selinux_fc" properties should point to the file_contexts files
580 # (file_contexts.bin) under META/.
581 for key in d:
582 if key.endswith("selinux_fc"):
583 fc_basename = os.path.basename(d[key])
584 fc_config = os.path.join(input_file, "META", fc_basename)
585 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700586
Daniel Norman72c626f2019-05-13 15:58:14 -0700587 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700588
Tom Cherryd14b8952018-08-09 14:26:00 -0700589 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700590 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700591 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700592 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700593
Tao Baof54216f2016-03-29 15:12:37 -0700594 # Redirect {system,vendor}_base_fs_file.
595 if "system_base_fs_file" in d:
596 basename = os.path.basename(d["system_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700597 system_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700598 if os.path.exists(system_base_fs_file):
599 d["system_base_fs_file"] = system_base_fs_file
600 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700601 logger.warning(
602 "Failed to find system base fs file: %s", system_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700603 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700604
605 if "vendor_base_fs_file" in d:
606 basename = os.path.basename(d["vendor_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700607 vendor_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700608 if os.path.exists(vendor_base_fs_file):
609 d["vendor_base_fs_file"] = vendor_base_fs_file
610 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700611 logger.warning(
612 "Failed to find vendor base fs file: %s", vendor_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700613 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700614
Doug Zongker37974732010-09-16 17:44:38 -0700615 def makeint(key):
616 if key in d:
617 d[key] = int(d[key], 0)
618
619 makeint("recovery_api_version")
620 makeint("blocksize")
621 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700622 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700623 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700624 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700625 makeint("recovery_size")
626 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800627 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700628
Tao Bao765668f2019-10-04 22:03:00 -0700629 # Load recovery fstab if applicable.
630 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800631
Tianjie Xu861f4132018-09-12 11:49:33 -0700632 # Tries to load the build props for all partitions with care_map, including
633 # system and vendor.
634 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800635 partition_prop = "{}.build.prop".format(partition)
636 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700637 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800638 # Some partition might use /<partition>/etc/build.prop as the new path.
639 # TODO: try new path first when majority of them switch to the new path.
640 if not d[partition_prop]:
641 d[partition_prop] = LoadBuildProp(
642 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700643 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800644
Tao Bao3ed35d32019-10-07 20:48:48 -0700645 # Set up the salt (based on fingerprint) that will be used when adding AVB
646 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800647 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700648 build_info = BuildInfo(d)
649 d["avb_salt"] = sha256(build_info.fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800650
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700651 return d
652
Tao Baod1de6f32017-03-01 16:38:48 -0800653
Tao Baobcd1d162017-08-26 13:10:26 -0700654def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700655 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700656 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700657 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700658 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700659 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700660 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700661
Tao Baod1de6f32017-03-01 16:38:48 -0800662
Daniel Norman4cc9df62019-07-18 10:11:07 -0700663def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900664 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700665 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900666
Daniel Norman4cc9df62019-07-18 10:11:07 -0700667
668def LoadDictionaryFromFile(file_path):
669 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900670 return LoadDictionaryFromLines(lines)
671
672
Michael Runge6e836112014-04-15 17:40:21 -0700673def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700674 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700675 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700676 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700677 if not line or line.startswith("#"):
678 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700679 if "=" in line:
680 name, value = line.split("=", 1)
681 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700682 return d
683
Tao Baod1de6f32017-03-01 16:38:48 -0800684
Tianjie Xucfa86222016-03-07 16:31:19 -0800685def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
686 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700687 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800688 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700689 self.mount_point = mount_point
690 self.fs_type = fs_type
691 self.device = device
692 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700693 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700694
695 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800696 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700697 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700698 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700699 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700700
Tao Baod1de6f32017-03-01 16:38:48 -0800701 assert fstab_version == 2
702
703 d = {}
704 for line in data.split("\n"):
705 line = line.strip()
706 if not line or line.startswith("#"):
707 continue
708
709 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
710 pieces = line.split()
711 if len(pieces) != 5:
712 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
713
714 # Ignore entries that are managed by vold.
715 options = pieces[4]
716 if "voldmanaged=" in options:
717 continue
718
719 # It's a good line, parse it.
720 length = 0
721 options = options.split(",")
722 for i in options:
723 if i.startswith("length="):
724 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800725 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800726 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700727 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800728
Tao Baod1de6f32017-03-01 16:38:48 -0800729 mount_flags = pieces[3]
730 # Honor the SELinux context if present.
731 context = None
732 for i in mount_flags.split(","):
733 if i.startswith("context="):
734 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800735
Tao Baod1de6f32017-03-01 16:38:48 -0800736 mount_point = pieces[1]
737 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
738 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800739
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700740 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700741 # system. Other areas assume system is always at "/system" so point /system
742 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700743 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800744 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700745 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700746 return d
747
748
Tao Bao765668f2019-10-04 22:03:00 -0700749def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
750 """Finds the path to recovery fstab and loads its contents."""
751 # recovery fstab is only meaningful when installing an update via recovery
752 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
753 if info_dict.get('ab_update') == 'true':
754 return None
755
756 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
757 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
758 # cases, since it may load the info_dict from an old build (e.g. when
759 # generating incremental OTAs from that build).
760 system_root_image = info_dict.get('system_root_image') == 'true'
761 if info_dict.get('no_recovery') != 'true':
762 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
763 if isinstance(input_file, zipfile.ZipFile):
764 if recovery_fstab_path not in input_file.namelist():
765 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
766 else:
767 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
768 if not os.path.exists(path):
769 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
770 return LoadRecoveryFSTab(
771 read_helper, info_dict['fstab_version'], recovery_fstab_path,
772 system_root_image)
773
774 if info_dict.get('recovery_as_boot') == 'true':
775 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
776 if isinstance(input_file, zipfile.ZipFile):
777 if recovery_fstab_path not in input_file.namelist():
778 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
779 else:
780 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
781 if not os.path.exists(path):
782 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
783 return LoadRecoveryFSTab(
784 read_helper, info_dict['fstab_version'], recovery_fstab_path,
785 system_root_image)
786
787 return None
788
789
Doug Zongker37974732010-09-16 17:44:38 -0700790def DumpInfoDict(d):
791 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700792 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700793
Dan Albert8b72aef2015-03-23 19:13:21 -0700794
Daniel Norman55417142019-11-25 16:04:36 -0800795def MergeDynamicPartitionInfoDicts(framework_dict, vendor_dict):
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700796 """Merges dynamic partition info variables.
797
798 Args:
799 framework_dict: The dictionary of dynamic partition info variables from the
800 partial framework target files.
801 vendor_dict: The dictionary of dynamic partition info variables from the
802 partial vendor target files.
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700803
804 Returns:
805 The merged dynamic partition info dictionary.
806 """
807 merged_dict = {}
808 # Partition groups and group sizes are defined by the vendor dict because
809 # these values may vary for each board that uses a shared system image.
810 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
Daniel Norman55417142019-11-25 16:04:36 -0800811 framework_dynamic_partition_list = framework_dict.get(
812 "dynamic_partition_list", "")
813 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list", "")
814 merged_dict["dynamic_partition_list"] = ("%s %s" % (
815 framework_dynamic_partition_list, vendor_dynamic_partition_list)).strip()
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700816 for partition_group in merged_dict["super_partition_groups"].split(" "):
817 # Set the partition group's size using the value from the vendor dict.
Daniel Norman55417142019-11-25 16:04:36 -0800818 key = "super_%s_group_size" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700819 if key not in vendor_dict:
820 raise ValueError("Vendor dict does not contain required key %s." % key)
821 merged_dict[key] = vendor_dict[key]
822
823 # Set the partition group's partition list using a concatenation of the
824 # framework and vendor partition lists.
Daniel Norman55417142019-11-25 16:04:36 -0800825 key = "super_%s_partition_list" % partition_group
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700826 merged_dict[key] = (
827 "%s %s" %
828 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
829 return merged_dict
830
831
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800832def AppendAVBSigningArgs(cmd, partition):
833 """Append signing arguments for avbtool."""
834 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
835 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700836 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
837 new_key_path = os.path.join(OPTIONS.search_path, key_path)
838 if os.path.exists(new_key_path):
839 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800840 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
841 if key_path and algorithm:
842 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700843 avb_salt = OPTIONS.info_dict.get("avb_salt")
844 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700845 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700846 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800847
848
Tao Bao765668f2019-10-04 22:03:00 -0700849def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700850 """Returns the VBMeta arguments for partition.
851
852 It sets up the VBMeta argument by including the partition descriptor from the
853 given 'image', or by configuring the partition as a chained partition.
854
855 Args:
856 partition: The name of the partition (e.g. "system").
857 image: The path to the partition image.
858 info_dict: A dict returned by common.LoadInfoDict(). Will use
859 OPTIONS.info_dict if None has been given.
860
861 Returns:
862 A list of VBMeta arguments.
863 """
864 if info_dict is None:
865 info_dict = OPTIONS.info_dict
866
867 # Check if chain partition is used.
868 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800869 if not key_path:
870 return ["--include_descriptors_from_image", image]
871
872 # For a non-A/B device, we don't chain /recovery nor include its descriptor
873 # into vbmeta.img. The recovery image will be configured on an independent
874 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
875 # See details at
876 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
Tao Bao3612c882019-10-14 17:49:31 -0700877 if info_dict.get("ab_update") != "true" and partition == "recovery":
cfig1aeef722019-09-20 22:45:06 +0800878 return []
879
880 # Otherwise chain the partition into vbmeta.
881 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
882 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700883
884
Tao Bao02a08592018-07-22 12:40:45 -0700885def GetAvbChainedPartitionArg(partition, info_dict, key=None):
886 """Constructs and returns the arg to build or verify a chained partition.
887
888 Args:
889 partition: The partition name.
890 info_dict: The info dict to look up the key info and rollback index
891 location.
892 key: The key to be used for building or verifying the partition. Defaults to
893 the key listed in info_dict.
894
895 Returns:
896 A string of form "partition:rollback_index_location:key" that can be used to
897 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700898 """
899 if key is None:
900 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700901 if key and not os.path.exists(key) and OPTIONS.search_path:
902 new_key_path = os.path.join(OPTIONS.search_path, key)
903 if os.path.exists(new_key_path):
904 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700905 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700906 rollback_index_location = info_dict[
907 "avb_" + partition + "_rollback_index_location"]
908 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
909
910
Daniel Norman276f0622019-07-26 14:13:51 -0700911def BuildVBMeta(image_path, partitions, name, needed_partitions):
912 """Creates a VBMeta image.
913
914 It generates the requested VBMeta image. The requested image could be for
915 top-level or chained VBMeta image, which is determined based on the name.
916
917 Args:
918 image_path: The output path for the new VBMeta image.
919 partitions: A dict that's keyed by partition names with image paths as
920 values. Only valid partition names are accepted, as listed in
921 common.AVB_PARTITIONS.
922 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
923 needed_partitions: Partitions whose descriptors should be included into the
924 generated VBMeta image.
925
926 Raises:
927 AssertionError: On invalid input args.
928 """
929 avbtool = OPTIONS.info_dict["avb_avbtool"]
930 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
931 AppendAVBSigningArgs(cmd, name)
932
933 for partition, path in partitions.items():
934 if partition not in needed_partitions:
935 continue
936 assert (partition in AVB_PARTITIONS or
937 partition in AVB_VBMETA_PARTITIONS), \
938 'Unknown partition: {}'.format(partition)
939 assert os.path.exists(path), \
940 'Failed to find {} for {}'.format(path, partition)
941 cmd.extend(GetAvbPartitionArg(partition, path))
942
943 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
944 if args and args.strip():
945 split_args = shlex.split(args)
946 for index, arg in enumerate(split_args[:-1]):
947 # Sanity check that the image file exists. Some images might be defined
948 # as a path relative to source tree, which may not be available at the
949 # same location when running this script (we have the input target_files
950 # zip only). For such cases, we additionally scan other locations (e.g.
951 # IMAGES/, RADIO/, etc) before bailing out.
952 if arg == '--include_descriptors_from_image':
953 image_path = split_args[index + 1]
954 if os.path.exists(image_path):
955 continue
956 found = False
957 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
958 alt_path = os.path.join(
959 OPTIONS.input_tmp, dir_name, os.path.basename(image_path))
960 if os.path.exists(alt_path):
961 split_args[index + 1] = alt_path
962 found = True
963 break
964 assert found, 'Failed to find {}'.format(image_path)
965 cmd.extend(split_args)
966
967 RunAndCheckOutput(cmd)
968
969
Steve Mucklee1b10862019-07-10 10:49:37 -0700970def _MakeRamdisk(sourcedir, fs_config_file=None):
971 ramdisk_img = tempfile.NamedTemporaryFile()
972
973 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
974 cmd = ["mkbootfs", "-f", fs_config_file,
975 os.path.join(sourcedir, "RAMDISK")]
976 else:
977 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
978 p1 = Run(cmd, stdout=subprocess.PIPE)
979 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
980
981 p2.wait()
982 p1.wait()
983 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
984 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
985
986 return ramdisk_img
987
988
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700989def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -0800990 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700991 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -0700992
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700993 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -0800994 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
995 we are building a two-step special image (i.e. building a recovery image to
996 be loaded into /boot in two-step OTAs).
997
998 Return the image data, or None if sourcedir does not appear to contains files
999 for building the requested image.
1000 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001001
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001002 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
1003 return None
1004
1005 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001006 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001007
Doug Zongkerd5131602012-08-02 14:46:42 -07001008 if info_dict is None:
1009 info_dict = OPTIONS.info_dict
1010
Doug Zongkereef39442009-04-02 12:14:19 -07001011 img = tempfile.NamedTemporaryFile()
1012
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001013 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001014 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001015
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001016 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1017 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1018
1019 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -07001020
Benoit Fradina45a8682014-07-14 21:00:43 +02001021 fn = os.path.join(sourcedir, "second")
1022 if os.access(fn, os.F_OK):
1023 cmd.append("--second")
1024 cmd.append(fn)
1025
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001026 fn = os.path.join(sourcedir, "dtb")
1027 if os.access(fn, os.F_OK):
1028 cmd.append("--dtb")
1029 cmd.append(fn)
1030
Doug Zongker171f1cd2009-06-15 22:36:37 -07001031 fn = os.path.join(sourcedir, "cmdline")
1032 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001033 cmd.append("--cmdline")
1034 cmd.append(open(fn).read().rstrip("\n"))
1035
1036 fn = os.path.join(sourcedir, "base")
1037 if os.access(fn, os.F_OK):
1038 cmd.append("--base")
1039 cmd.append(open(fn).read().rstrip("\n"))
1040
Ying Wang4de6b5b2010-08-25 14:29:34 -07001041 fn = os.path.join(sourcedir, "pagesize")
1042 if os.access(fn, os.F_OK):
1043 cmd.append("--pagesize")
1044 cmd.append(open(fn).read().rstrip("\n"))
1045
Tao Bao76def242017-11-21 09:25:31 -08001046 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001047 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001048 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001049
Tao Bao76def242017-11-21 09:25:31 -08001050 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001051 if args and args.strip():
1052 cmd.extend(shlex.split(args))
1053
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001054 if has_ramdisk:
1055 cmd.extend(["--ramdisk", ramdisk_img.name])
1056
Tao Baod95e9fd2015-03-29 23:07:41 -07001057 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001058 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001059 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001060 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001061 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001062 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001063
Tao Baobf70c3182017-07-11 17:27:55 -07001064 # "boot" or "recovery", without extension.
1065 partition_name = os.path.basename(sourcedir).lower()
1066
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001067 if partition_name == "recovery":
1068 if info_dict.get("include_recovery_dtbo") == "true":
1069 fn = os.path.join(sourcedir, "recovery_dtbo")
1070 cmd.extend(["--recovery_dtbo", fn])
1071 if info_dict.get("include_recovery_acpio") == "true":
1072 fn = os.path.join(sourcedir, "recovery_acpio")
1073 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001074
Tao Bao986ee862018-10-04 15:46:16 -07001075 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001076
Tao Bao76def242017-11-21 09:25:31 -08001077 if (info_dict.get("boot_signer") == "true" and
1078 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001079 # Hard-code the path as "/boot" for two-step special recovery image (which
1080 # will be loaded into /boot during the two-step OTA).
1081 if two_step_image:
1082 path = "/boot"
1083 else:
Tao Baobf70c3182017-07-11 17:27:55 -07001084 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001085 cmd = [OPTIONS.boot_signer_path]
1086 cmd.extend(OPTIONS.boot_signer_args)
1087 cmd.extend([path, img.name,
1088 info_dict["verity_key"] + ".pk8",
1089 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001090 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001091
Tao Baod95e9fd2015-03-29 23:07:41 -07001092 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001093 elif info_dict.get("vboot"):
Tao Baobf70c3182017-07-11 17:27:55 -07001094 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001095 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001096 # We have switched from the prebuilt futility binary to using the tool
1097 # (futility-host) built from the source. Override the setting in the old
1098 # TF.zip.
1099 futility = info_dict["futility"]
1100 if futility.startswith("prebuilts/"):
1101 futility = "futility-host"
1102 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001103 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001104 info_dict["vboot_key"] + ".vbprivk",
1105 info_dict["vboot_subkey"] + ".vbprivk",
1106 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001107 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001108 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001109
Tao Baof3282b42015-04-01 11:21:55 -07001110 # Clean up the temp files.
1111 img_unsigned.close()
1112 img_keyblock.close()
1113
David Zeuthen8fecb282017-12-01 16:24:01 -05001114 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001115 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001116 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001117 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001118 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c3182017-07-11 17:27:55 -07001119 "--partition_size", str(part_size), "--partition_name",
1120 partition_name]
1121 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001122 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001123 if args and args.strip():
1124 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001125 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001126
1127 img.seek(os.SEEK_SET, 0)
1128 data = img.read()
1129
1130 if has_ramdisk:
1131 ramdisk_img.close()
1132 img.close()
1133
1134 return data
1135
1136
Doug Zongkerd5131602012-08-02 14:46:42 -07001137def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001138 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001139 """Return a File object with the desired bootable image.
1140
1141 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1142 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1143 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001144
Doug Zongker55d93282011-01-25 17:03:34 -08001145 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1146 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001147 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001148 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001149
1150 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1151 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001152 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001153 return File.FromLocalFile(name, prebuilt_path)
1154
Tao Bao32fcdab2018-10-12 10:30:39 -07001155 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001156
1157 if info_dict is None:
1158 info_dict = OPTIONS.info_dict
1159
1160 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001161 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1162 # for recovery.
1163 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1164 prebuilt_name != "boot.img" or
1165 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001166
Doug Zongker6f1d0312014-08-22 08:07:12 -07001167 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001168 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
1169 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001170 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001171 if data:
1172 return File(name, data)
1173 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001174
Doug Zongkereef39442009-04-02 12:14:19 -07001175
Steve Mucklee1b10862019-07-10 10:49:37 -07001176def _BuildVendorBootImage(sourcedir, info_dict=None):
1177 """Build a vendor boot image from the specified sourcedir.
1178
1179 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1180 turn them into a vendor boot image.
1181
1182 Return the image data, or None if sourcedir does not appear to contains files
1183 for building the requested image.
1184 """
1185
1186 if info_dict is None:
1187 info_dict = OPTIONS.info_dict
1188
1189 img = tempfile.NamedTemporaryFile()
1190
1191 ramdisk_img = _MakeRamdisk(sourcedir)
1192
1193 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1194 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1195
1196 cmd = [mkbootimg]
1197
1198 fn = os.path.join(sourcedir, "dtb")
1199 if os.access(fn, os.F_OK):
1200 cmd.append("--dtb")
1201 cmd.append(fn)
1202
1203 fn = os.path.join(sourcedir, "vendor_cmdline")
1204 if os.access(fn, os.F_OK):
1205 cmd.append("--vendor_cmdline")
1206 cmd.append(open(fn).read().rstrip("\n"))
1207
1208 fn = os.path.join(sourcedir, "base")
1209 if os.access(fn, os.F_OK):
1210 cmd.append("--base")
1211 cmd.append(open(fn).read().rstrip("\n"))
1212
1213 fn = os.path.join(sourcedir, "pagesize")
1214 if os.access(fn, os.F_OK):
1215 cmd.append("--pagesize")
1216 cmd.append(open(fn).read().rstrip("\n"))
1217
1218 args = info_dict.get("mkbootimg_args")
1219 if args and args.strip():
1220 cmd.extend(shlex.split(args))
1221
1222 args = info_dict.get("mkbootimg_version_args")
1223 if args and args.strip():
1224 cmd.extend(shlex.split(args))
1225
1226 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1227 cmd.extend(["--vendor_boot", img.name])
1228
1229 RunAndCheckOutput(cmd)
1230
1231 # AVB: if enabled, calculate and add hash.
1232 if info_dict.get("avb_enable") == "true":
1233 avbtool = info_dict["avb_avbtool"]
1234 part_size = info_dict["vendor_boot_size"]
1235 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Donghoon Yu92420db2019-11-21 14:20:17 +09001236 "--partition_size", str(part_size), "--partition_name", "vendor_boot"]
Steve Mucklee1b10862019-07-10 10:49:37 -07001237 AppendAVBSigningArgs(cmd, "vendor_boot")
1238 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1239 if args and args.strip():
1240 cmd.extend(shlex.split(args))
1241 RunAndCheckOutput(cmd)
1242
1243 img.seek(os.SEEK_SET, 0)
1244 data = img.read()
1245
1246 ramdisk_img.close()
1247 img.close()
1248
1249 return data
1250
1251
1252def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1253 info_dict=None):
1254 """Return a File object with the desired vendor boot image.
1255
1256 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1257 the source files in 'unpack_dir'/'tree_subdir'."""
1258
1259 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1260 if os.path.exists(prebuilt_path):
1261 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1262 return File.FromLocalFile(name, prebuilt_path)
1263
1264 logger.info("building image from target_files %s...", tree_subdir)
1265
1266 if info_dict is None:
1267 info_dict = OPTIONS.info_dict
1268
1269 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1270 if data:
1271 return File(name, data)
1272 return None
1273
1274
Narayan Kamatha07bf042017-08-14 14:49:21 +01001275def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001276 """Gunzips the given gzip compressed file to a given output file."""
1277 with gzip.open(in_filename, "rb") as in_file, \
1278 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001279 shutil.copyfileobj(in_file, out_file)
1280
1281
Tao Bao0ff15de2019-03-20 11:26:06 -07001282def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001283 """Unzips the archive to the given directory.
1284
1285 Args:
1286 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001287 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001288 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1289 archvie. Non-matching patterns will be filtered out. If there's no match
1290 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001291 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001292 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001293 if patterns is not None:
1294 # Filter out non-matching patterns. unzip will complain otherwise.
1295 with zipfile.ZipFile(filename) as input_zip:
1296 names = input_zip.namelist()
1297 filtered = [
1298 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1299
1300 # There isn't any matching files. Don't unzip anything.
1301 if not filtered:
1302 return
1303 cmd.extend(filtered)
1304
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001305 RunAndCheckOutput(cmd)
1306
1307
Doug Zongker75f17362009-12-08 13:46:44 -08001308def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001309 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001310
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001311 Args:
1312 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1313 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1314
1315 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1316 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001317
Tao Bao1c830bf2017-12-25 10:43:47 -08001318 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001319 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001320 """
Doug Zongkereef39442009-04-02 12:14:19 -07001321
Tao Bao1c830bf2017-12-25 10:43:47 -08001322 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001323 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1324 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001325 UnzipToDir(m.group(1), tmp, pattern)
1326 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001327 filename = m.group(1)
1328 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001329 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001330
Tao Baodba59ee2018-01-09 13:21:02 -08001331 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001332
1333
Yifan Hong8a66a712019-04-04 15:37:57 -07001334def GetUserImage(which, tmpdir, input_zip,
1335 info_dict=None,
1336 allow_shared_blocks=None,
1337 hashtree_info_generator=None,
1338 reset_file_map=False):
1339 """Returns an Image object suitable for passing to BlockImageDiff.
1340
1341 This function loads the specified image from the given path. If the specified
1342 image is sparse, it also performs additional processing for OTA purpose. For
1343 example, it always adds block 0 to clobbered blocks list. It also detects
1344 files that cannot be reconstructed from the block list, for whom we should
1345 avoid applying imgdiff.
1346
1347 Args:
1348 which: The partition name.
1349 tmpdir: The directory that contains the prebuilt image and block map file.
1350 input_zip: The target-files ZIP archive.
1351 info_dict: The dict to be looked up for relevant info.
1352 allow_shared_blocks: If image is sparse, whether having shared blocks is
1353 allowed. If none, it is looked up from info_dict.
1354 hashtree_info_generator: If present and image is sparse, generates the
1355 hashtree_info for this sparse image.
1356 reset_file_map: If true and image is sparse, reset file map before returning
1357 the image.
1358 Returns:
1359 A Image object. If it is a sparse image and reset_file_map is False, the
1360 image will have file_map info loaded.
1361 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001362 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001363 info_dict = LoadInfoDict(input_zip)
1364
1365 is_sparse = info_dict.get("extfs_sparse_flag")
1366
1367 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1368 # shared blocks (i.e. some blocks will show up in multiple files' block
1369 # list). We can only allocate such shared blocks to the first "owner", and
1370 # disable imgdiff for all later occurrences.
1371 if allow_shared_blocks is None:
1372 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1373
1374 if is_sparse:
1375 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1376 hashtree_info_generator)
1377 if reset_file_map:
1378 img.ResetFileMap()
1379 return img
1380 else:
1381 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1382
1383
1384def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1385 """Returns a Image object suitable for passing to BlockImageDiff.
1386
1387 This function loads the specified non-sparse image from the given path.
1388
1389 Args:
1390 which: The partition name.
1391 tmpdir: The directory that contains the prebuilt image and block map file.
1392 Returns:
1393 A Image object.
1394 """
1395 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1396 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1397
1398 # The image and map files must have been created prior to calling
1399 # ota_from_target_files.py (since LMP).
1400 assert os.path.exists(path) and os.path.exists(mappath)
1401
Tianjie Xu41976c72019-07-03 13:57:01 -07001402 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1403
Yifan Hong8a66a712019-04-04 15:37:57 -07001404
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001405def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1406 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001407 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1408
1409 This function loads the specified sparse image from the given path, and
1410 performs additional processing for OTA purpose. For example, it always adds
1411 block 0 to clobbered blocks list. It also detects files that cannot be
1412 reconstructed from the block list, for whom we should avoid applying imgdiff.
1413
1414 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001415 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001416 tmpdir: The directory that contains the prebuilt image and block map file.
1417 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001418 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001419 hashtree_info_generator: If present, generates the hashtree_info for this
1420 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001421 Returns:
1422 A SparseImage object, with file_map info loaded.
1423 """
Tao Baoc765cca2018-01-31 17:32:40 -08001424 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1425 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1426
1427 # The image and map files must have been created prior to calling
1428 # ota_from_target_files.py (since LMP).
1429 assert os.path.exists(path) and os.path.exists(mappath)
1430
1431 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1432 # it to clobbered_blocks so that it will be written to the target
1433 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1434 clobbered_blocks = "0"
1435
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001436 image = sparse_img.SparseImage(
1437 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1438 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001439
1440 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1441 # if they contain all zeros. We can't reconstruct such a file from its block
1442 # list. Tag such entries accordingly. (Bug: 65213616)
1443 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001444 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001445 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001446 continue
1447
Tom Cherryd14b8952018-08-09 14:26:00 -07001448 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1449 # filename listed in system.map may contain an additional leading slash
1450 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1451 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001452 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001453
Tom Cherryd14b8952018-08-09 14:26:00 -07001454 # Special handling another case, where files not under /system
1455 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001456 if which == 'system' and not arcname.startswith('SYSTEM'):
1457 arcname = 'ROOT/' + arcname
1458
1459 assert arcname in input_zip.namelist(), \
1460 "Failed to find the ZIP entry for {}".format(entry)
1461
Tao Baoc765cca2018-01-31 17:32:40 -08001462 info = input_zip.getinfo(arcname)
1463 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001464
1465 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001466 # image, check the original block list to determine its completeness. Note
1467 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001468 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001469 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001470
Tao Baoc765cca2018-01-31 17:32:40 -08001471 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1472 ranges.extra['incomplete'] = True
1473
1474 return image
1475
1476
Doug Zongkereef39442009-04-02 12:14:19 -07001477def GetKeyPasswords(keylist):
1478 """Given a list of keys, prompt the user to enter passwords for
1479 those which require them. Return a {key: password} dict. password
1480 will be None if the key has no password."""
1481
Doug Zongker8ce7c252009-05-22 13:34:54 -07001482 no_passwords = []
1483 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001484 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001485 devnull = open("/dev/null", "w+b")
1486 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001487 # We don't need a password for things that aren't really keys.
1488 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001489 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001490 continue
1491
T.R. Fullhart37e10522013-03-18 10:31:26 -07001492 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001493 "-inform", "DER", "-nocrypt"],
1494 stdin=devnull.fileno(),
1495 stdout=devnull.fileno(),
1496 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001497 p.communicate()
1498 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001499 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001500 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001501 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001502 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1503 "-inform", "DER", "-passin", "pass:"],
1504 stdin=devnull.fileno(),
1505 stdout=devnull.fileno(),
1506 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001507 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001508 if p.returncode == 0:
1509 # Encrypted key with empty string as password.
1510 key_passwords[k] = ''
1511 elif stderr.startswith('Error decrypting key'):
1512 # Definitely encrypted key.
1513 # It would have said "Error reading key" if it didn't parse correctly.
1514 need_passwords.append(k)
1515 else:
1516 # Potentially, a type of key that openssl doesn't understand.
1517 # We'll let the routines in signapk.jar handle it.
1518 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001519 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001520
T.R. Fullhart37e10522013-03-18 10:31:26 -07001521 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001522 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001523 return key_passwords
1524
1525
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001526def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001527 """Gets the minSdkVersion declared in the APK.
1528
changho.shin0f125362019-07-08 10:59:00 +09001529 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001530 This can be both a decimal number (API Level) or a codename.
1531
1532 Args:
1533 apk_name: The APK filename.
1534
1535 Returns:
1536 The parsed SDK version string.
1537
1538 Raises:
1539 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001540 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001541 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001542 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001543 stderr=subprocess.PIPE)
1544 stdoutdata, stderrdata = proc.communicate()
1545 if proc.returncode != 0:
1546 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001547 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001548 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001549
Tao Baof47bf0f2018-03-21 23:28:51 -07001550 for line in stdoutdata.split("\n"):
1551 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001552 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1553 if m:
1554 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001555 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001556
1557
1558def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001559 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001560
Tao Baof47bf0f2018-03-21 23:28:51 -07001561 If minSdkVersion is set to a codename, it is translated to a number using the
1562 provided map.
1563
1564 Args:
1565 apk_name: The APK filename.
1566
1567 Returns:
1568 The parsed SDK version number.
1569
1570 Raises:
1571 ExternalError: On failing to get the min SDK version number.
1572 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001573 version = GetMinSdkVersion(apk_name)
1574 try:
1575 return int(version)
1576 except ValueError:
1577 # Not a decimal number. Codename?
1578 if version in codename_to_api_level_map:
1579 return codename_to_api_level_map[version]
1580 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001581 raise ExternalError(
1582 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1583 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001584
1585
1586def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001587 codename_to_api_level_map=None, whole_file=False,
1588 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001589 """Sign the input_name zip/jar/apk, producing output_name. Use the
1590 given key and password (the latter may be None if the key does not
1591 have a password.
1592
Doug Zongker951495f2009-08-14 12:44:19 -07001593 If whole_file is true, use the "-w" option to SignApk to embed a
1594 signature that covers the whole file in the archive comment of the
1595 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001596
1597 min_api_level is the API Level (int) of the oldest platform this file may end
1598 up on. If not specified for an APK, the API Level is obtained by interpreting
1599 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1600
1601 codename_to_api_level_map is needed to translate the codename which may be
1602 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001603
1604 Caller may optionally specify extra args to be passed to SignApk, which
1605 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001606 """
Tao Bao76def242017-11-21 09:25:31 -08001607 if codename_to_api_level_map is None:
1608 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001609 if extra_signapk_args is None:
1610 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001611
Alex Klyubin9667b182015-12-10 13:38:50 -08001612 java_library_path = os.path.join(
1613 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1614
Tao Baoe95540e2016-11-08 12:08:53 -08001615 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1616 ["-Djava.library.path=" + java_library_path,
1617 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001618 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001619 if whole_file:
1620 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001621
1622 min_sdk_version = min_api_level
1623 if min_sdk_version is None:
1624 if not whole_file:
1625 min_sdk_version = GetMinSdkVersionInt(
1626 input_name, codename_to_api_level_map)
1627 if min_sdk_version is not None:
1628 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1629
T.R. Fullhart37e10522013-03-18 10:31:26 -07001630 cmd.extend([key + OPTIONS.public_key_suffix,
1631 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001632 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001633
Tao Bao73dd4f42018-10-04 16:25:33 -07001634 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001635 if password is not None:
1636 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001637 stdoutdata, _ = proc.communicate(password)
1638 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001639 raise ExternalError(
1640 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001641 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001642
Doug Zongkereef39442009-04-02 12:14:19 -07001643
Doug Zongker37974732010-09-16 17:44:38 -07001644def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001645 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001646
Tao Bao9dd909e2017-11-14 11:27:32 -08001647 For non-AVB images, raise exception if the data is too big. Print a warning
1648 if the data is nearing the maximum size.
1649
1650 For AVB images, the actual image size should be identical to the limit.
1651
1652 Args:
1653 data: A string that contains all the data for the partition.
1654 target: The partition name. The ".img" suffix is optional.
1655 info_dict: The dict to be looked up for relevant info.
1656 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001657 if target.endswith(".img"):
1658 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001659 mount_point = "/" + target
1660
Ying Wangf8824af2014-06-03 14:07:27 -07001661 fs_type = None
1662 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001663 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001664 if mount_point == "/userdata":
1665 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001666 p = info_dict["fstab"][mount_point]
1667 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001668 device = p.device
1669 if "/" in device:
1670 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001671 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001672 if not fs_type or not limit:
1673 return
Doug Zongkereef39442009-04-02 12:14:19 -07001674
Andrew Boie0f9aec82012-02-14 09:32:52 -08001675 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001676 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1677 # path.
1678 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1679 if size != limit:
1680 raise ExternalError(
1681 "Mismatching image size for %s: expected %d actual %d" % (
1682 target, limit, size))
1683 else:
1684 pct = float(size) * 100.0 / limit
1685 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1686 if pct >= 99.0:
1687 raise ExternalError(msg)
1688 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001689 logger.warning("\n WARNING: %s\n", msg)
1690 else:
1691 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001692
1693
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001694def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001695 """Parses the APK certs info from a given target-files zip.
1696
1697 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1698 tuple with the following elements: (1) a dictionary that maps packages to
1699 certs (based on the "certificate" and "private_key" attributes in the file;
1700 (2) a string representing the extension of compressed APKs in the target files
1701 (e.g ".gz", ".bro").
1702
1703 Args:
1704 tf_zip: The input target_files ZipFile (already open).
1705
1706 Returns:
1707 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1708 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1709 no compressed APKs.
1710 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001711 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001712 compressed_extension = None
1713
Tao Bao0f990332017-09-08 19:02:54 -07001714 # META/apkcerts.txt contains the info for _all_ the packages known at build
1715 # time. Filter out the ones that are not installed.
1716 installed_files = set()
1717 for name in tf_zip.namelist():
1718 basename = os.path.basename(name)
1719 if basename:
1720 installed_files.add(basename)
1721
Tao Baoda30cfa2017-12-01 16:19:46 -08001722 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001723 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001724 if not line:
1725 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001726 m = re.match(
1727 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
1728 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
1729 line)
1730 if not m:
1731 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001732
Tao Bao818ddf52018-01-05 11:17:34 -08001733 matches = m.groupdict()
1734 cert = matches["CERT"]
1735 privkey = matches["PRIVKEY"]
1736 name = matches["NAME"]
1737 this_compressed_extension = matches["COMPRESSED"]
1738
1739 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1740 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1741 if cert in SPECIAL_CERT_STRINGS and not privkey:
1742 certmap[name] = cert
1743 elif (cert.endswith(OPTIONS.public_key_suffix) and
1744 privkey.endswith(OPTIONS.private_key_suffix) and
1745 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1746 certmap[name] = cert[:-public_key_suffix_len]
1747 else:
1748 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1749
1750 if not this_compressed_extension:
1751 continue
1752
1753 # Only count the installed files.
1754 filename = name + '.' + this_compressed_extension
1755 if filename not in installed_files:
1756 continue
1757
1758 # Make sure that all the values in the compression map have the same
1759 # extension. We don't support multiple compression methods in the same
1760 # system image.
1761 if compressed_extension:
1762 if this_compressed_extension != compressed_extension:
1763 raise ValueError(
1764 "Multiple compressed extensions: {} vs {}".format(
1765 compressed_extension, this_compressed_extension))
1766 else:
1767 compressed_extension = this_compressed_extension
1768
1769 return (certmap,
1770 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001771
1772
Doug Zongkereef39442009-04-02 12:14:19 -07001773COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001774Global options
1775
1776 -p (--path) <dir>
1777 Prepend <dir>/bin to the list of places to search for binaries run by this
1778 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001779
Doug Zongker05d3dea2009-06-22 11:32:31 -07001780 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001781 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001782
Tao Bao30df8b42018-04-23 15:32:53 -07001783 -x (--extra) <key=value>
1784 Add a key/value pair to the 'extras' dict, which device-specific extension
1785 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001786
Doug Zongkereef39442009-04-02 12:14:19 -07001787 -v (--verbose)
1788 Show command lines being executed.
1789
1790 -h (--help)
1791 Display this usage message and exit.
Yifan Hong30910932019-10-25 20:36:55 -07001792
1793 --logfile <file>
1794 Put verbose logs to specified file (regardless of --verbose option.)
Doug Zongkereef39442009-04-02 12:14:19 -07001795"""
1796
1797def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001798 print(docstring.rstrip("\n"))
1799 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001800
1801
1802def ParseOptions(argv,
1803 docstring,
1804 extra_opts="", extra_long_opts=(),
1805 extra_option_handler=None):
1806 """Parse the options in argv and return any arguments that aren't
1807 flags. docstring is the calling module's docstring, to be displayed
1808 for errors and -h. extra_opts and extra_long_opts are for flags
1809 defined by the caller, which are processed by passing them to
1810 extra_option_handler."""
1811
1812 try:
1813 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001814 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001815 ["help", "verbose", "path=", "signapk_path=",
1816 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -07001817 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001818 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1819 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Yifan Hong30910932019-10-25 20:36:55 -07001820 "extra=", "logfile="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001821 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001822 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001823 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001824 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001825 sys.exit(2)
1826
Doug Zongkereef39442009-04-02 12:14:19 -07001827 for o, a in opts:
1828 if o in ("-h", "--help"):
1829 Usage(docstring)
1830 sys.exit()
1831 elif o in ("-v", "--verbose"):
1832 OPTIONS.verbose = True
1833 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001834 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001835 elif o in ("--signapk_path",):
1836 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001837 elif o in ("--signapk_shared_library_path",):
1838 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001839 elif o in ("--extra_signapk_args",):
1840 OPTIONS.extra_signapk_args = shlex.split(a)
1841 elif o in ("--java_path",):
1842 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001843 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001844 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -07001845 elif o in ("--public_key_suffix",):
1846 OPTIONS.public_key_suffix = a
1847 elif o in ("--private_key_suffix",):
1848 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001849 elif o in ("--boot_signer_path",):
1850 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001851 elif o in ("--boot_signer_args",):
1852 OPTIONS.boot_signer_args = shlex.split(a)
1853 elif o in ("--verity_signer_path",):
1854 OPTIONS.verity_signer_path = a
1855 elif o in ("--verity_signer_args",):
1856 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07001857 elif o in ("-s", "--device_specific"):
1858 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001859 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001860 key, value = a.split("=", 1)
1861 OPTIONS.extras[key] = value
Yifan Hong30910932019-10-25 20:36:55 -07001862 elif o in ("--logfile",):
1863 OPTIONS.logfile = a
Doug Zongkereef39442009-04-02 12:14:19 -07001864 else:
1865 if extra_option_handler is None or not extra_option_handler(o, a):
1866 assert False, "unknown option \"%s\"" % (o,)
1867
Doug Zongker85448772014-09-09 14:59:20 -07001868 if OPTIONS.search_path:
1869 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1870 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001871
1872 return args
1873
1874
Tao Bao4c851b12016-09-19 13:54:38 -07001875def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001876 """Make a temp file and add it to the list of things to be deleted
1877 when Cleanup() is called. Return the filename."""
1878 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1879 os.close(fd)
1880 OPTIONS.tempfiles.append(fn)
1881 return fn
1882
1883
Tao Bao1c830bf2017-12-25 10:43:47 -08001884def MakeTempDir(prefix='tmp', suffix=''):
1885 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1886
1887 Returns:
1888 The absolute pathname of the new directory.
1889 """
1890 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1891 OPTIONS.tempfiles.append(dir_name)
1892 return dir_name
1893
1894
Doug Zongkereef39442009-04-02 12:14:19 -07001895def Cleanup():
1896 for i in OPTIONS.tempfiles:
1897 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001898 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001899 else:
1900 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001901 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001902
1903
1904class PasswordManager(object):
1905 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001906 self.editor = os.getenv("EDITOR")
1907 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001908
1909 def GetPasswords(self, items):
1910 """Get passwords corresponding to each string in 'items',
1911 returning a dict. (The dict may have keys in addition to the
1912 values in 'items'.)
1913
1914 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1915 user edit that file to add more needed passwords. If no editor is
1916 available, or $ANDROID_PW_FILE isn't define, prompts the user
1917 interactively in the ordinary way.
1918 """
1919
1920 current = self.ReadFile()
1921
1922 first = True
1923 while True:
1924 missing = []
1925 for i in items:
1926 if i not in current or not current[i]:
1927 missing.append(i)
1928 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001929 if not missing:
1930 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07001931
1932 for i in missing:
1933 current[i] = ""
1934
1935 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001936 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08001937 if sys.version_info[0] >= 3:
1938 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07001939 answer = raw_input("try to edit again? [y]> ").strip()
1940 if answer and answer[0] not in 'yY':
1941 raise RuntimeError("key passwords unavailable")
1942 first = False
1943
1944 current = self.UpdateAndReadFile(current)
1945
Dan Albert8b72aef2015-03-23 19:13:21 -07001946 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07001947 """Prompt the user to enter a value (password) for each key in
1948 'current' whose value is fales. Returns a new dict with all the
1949 values.
1950 """
1951 result = {}
Tao Bao38884282019-07-10 22:20:56 -07001952 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001953 if v:
1954 result[k] = v
1955 else:
1956 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07001957 result[k] = getpass.getpass(
1958 "Enter password for %s key> " % k).strip()
1959 if result[k]:
1960 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07001961 return result
1962
1963 def UpdateAndReadFile(self, current):
1964 if not self.editor or not self.pwfile:
1965 return self.PromptResult(current)
1966
1967 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07001968 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001969 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
1970 f.write("# (Additional spaces are harmless.)\n\n")
1971
1972 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07001973 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07001974 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001975 f.write("[[[ %s ]]] %s\n" % (v, k))
1976 if not v and first_line is None:
1977 # position cursor on first line with no password.
1978 first_line = i + 4
1979 f.close()
1980
Tao Bao986ee862018-10-04 15:46:16 -07001981 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07001982
1983 return self.ReadFile()
1984
1985 def ReadFile(self):
1986 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07001987 if self.pwfile is None:
1988 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07001989 try:
1990 f = open(self.pwfile, "r")
1991 for line in f:
1992 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001993 if not line or line[0] == '#':
1994 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07001995 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
1996 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07001997 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001998 else:
1999 result[m.group(2)] = m.group(1)
2000 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002001 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002002 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002003 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002004 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002005
2006
Dan Albert8e0178d2015-01-27 15:53:15 -08002007def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2008 compress_type=None):
2009 import datetime
2010
2011 # http://b/18015246
2012 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2013 # for files larger than 2GiB. We can work around this by adjusting their
2014 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2015 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2016 # it isn't clear to me exactly what circumstances cause this).
2017 # `zipfile.write()` must be used directly to work around this.
2018 #
2019 # This mess can be avoided if we port to python3.
2020 saved_zip64_limit = zipfile.ZIP64_LIMIT
2021 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2022
2023 if compress_type is None:
2024 compress_type = zip_file.compression
2025 if arcname is None:
2026 arcname = filename
2027
2028 saved_stat = os.stat(filename)
2029
2030 try:
2031 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2032 # file to be zipped and reset it when we're done.
2033 os.chmod(filename, perms)
2034
2035 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002036 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2037 # intentional. zip stores datetimes in local time without a time zone
2038 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2039 # in the zip archive.
2040 local_epoch = datetime.datetime.fromtimestamp(0)
2041 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002042 os.utime(filename, (timestamp, timestamp))
2043
2044 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2045 finally:
2046 os.chmod(filename, saved_stat.st_mode)
2047 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2048 zipfile.ZIP64_LIMIT = saved_zip64_limit
2049
2050
Tao Bao58c1b962015-05-20 09:32:18 -07002051def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002052 compress_type=None):
2053 """Wrap zipfile.writestr() function to work around the zip64 limit.
2054
2055 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2056 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2057 when calling crc32(bytes).
2058
2059 But it still works fine to write a shorter string into a large zip file.
2060 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2061 when we know the string won't be too long.
2062 """
2063
2064 saved_zip64_limit = zipfile.ZIP64_LIMIT
2065 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2066
2067 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2068 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002069 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002070 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002071 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002072 else:
Tao Baof3282b42015-04-01 11:21:55 -07002073 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002074 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2075 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2076 # such a case (since
2077 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2078 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2079 # permission bits. We follow the logic in Python 3 to get consistent
2080 # behavior between using the two versions.
2081 if not zinfo.external_attr:
2082 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002083
2084 # If compress_type is given, it overrides the value in zinfo.
2085 if compress_type is not None:
2086 zinfo.compress_type = compress_type
2087
Tao Bao58c1b962015-05-20 09:32:18 -07002088 # If perms is given, it has a priority.
2089 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002090 # If perms doesn't set the file type, mark it as a regular file.
2091 if perms & 0o770000 == 0:
2092 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002093 zinfo.external_attr = perms << 16
2094
Tao Baof3282b42015-04-01 11:21:55 -07002095 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002096 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2097
Dan Albert8b72aef2015-03-23 19:13:21 -07002098 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002099 zipfile.ZIP64_LIMIT = saved_zip64_limit
2100
2101
Tao Bao89d7ab22017-12-14 17:05:33 -08002102def ZipDelete(zip_filename, entries):
2103 """Deletes entries from a ZIP file.
2104
2105 Since deleting entries from a ZIP file is not supported, it shells out to
2106 'zip -d'.
2107
2108 Args:
2109 zip_filename: The name of the ZIP file.
2110 entries: The name of the entry, or the list of names to be deleted.
2111
2112 Raises:
2113 AssertionError: In case of non-zero return from 'zip'.
2114 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002115 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002116 entries = [entries]
2117 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002118 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002119
2120
Tao Baof3282b42015-04-01 11:21:55 -07002121def ZipClose(zip_file):
2122 # http://b/18015246
2123 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2124 # central directory.
2125 saved_zip64_limit = zipfile.ZIP64_LIMIT
2126 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2127
2128 zip_file.close()
2129
2130 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002131
2132
2133class DeviceSpecificParams(object):
2134 module = None
2135 def __init__(self, **kwargs):
2136 """Keyword arguments to the constructor become attributes of this
2137 object, which is passed to all functions in the device-specific
2138 module."""
Tao Bao38884282019-07-10 22:20:56 -07002139 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002140 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002141 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002142
2143 if self.module is None:
2144 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002145 if not path:
2146 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002147 try:
2148 if os.path.isdir(path):
2149 info = imp.find_module("releasetools", [path])
2150 else:
2151 d, f = os.path.split(path)
2152 b, x = os.path.splitext(f)
2153 if x == ".py":
2154 f = b
2155 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002156 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002157 self.module = imp.load_module("device_specific", *info)
2158 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002159 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002160
2161 def _DoCall(self, function_name, *args, **kwargs):
2162 """Call the named function in the device-specific module, passing
2163 the given args and kwargs. The first argument to the call will be
2164 the DeviceSpecific object itself. If there is no module, or the
2165 module does not define the function, return the value of the
2166 'default' kwarg (which itself defaults to None)."""
2167 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002168 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002169 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2170
2171 def FullOTA_Assertions(self):
2172 """Called after emitting the block of assertions at the top of a
2173 full OTA package. Implementations can add whatever additional
2174 assertions they like."""
2175 return self._DoCall("FullOTA_Assertions")
2176
Doug Zongkere5ff5902012-01-17 10:55:37 -08002177 def FullOTA_InstallBegin(self):
2178 """Called at the start of full OTA installation."""
2179 return self._DoCall("FullOTA_InstallBegin")
2180
Yifan Hong10c530d2018-12-27 17:34:18 -08002181 def FullOTA_GetBlockDifferences(self):
2182 """Called during full OTA installation and verification.
2183 Implementation should return a list of BlockDifference objects describing
2184 the update on each additional partitions.
2185 """
2186 return self._DoCall("FullOTA_GetBlockDifferences")
2187
Doug Zongker05d3dea2009-06-22 11:32:31 -07002188 def FullOTA_InstallEnd(self):
2189 """Called at the end of full OTA installation; typically this is
2190 used to install the image for the device's baseband processor."""
2191 return self._DoCall("FullOTA_InstallEnd")
2192
2193 def IncrementalOTA_Assertions(self):
2194 """Called after emitting the block of assertions at the top of an
2195 incremental OTA package. Implementations can add whatever
2196 additional assertions they like."""
2197 return self._DoCall("IncrementalOTA_Assertions")
2198
Doug Zongkere5ff5902012-01-17 10:55:37 -08002199 def IncrementalOTA_VerifyBegin(self):
2200 """Called at the start of the verification phase of incremental
2201 OTA installation; additional checks can be placed here to abort
2202 the script before any changes are made."""
2203 return self._DoCall("IncrementalOTA_VerifyBegin")
2204
Doug Zongker05d3dea2009-06-22 11:32:31 -07002205 def IncrementalOTA_VerifyEnd(self):
2206 """Called at the end of the verification phase of incremental OTA
2207 installation; additional checks can be placed here to abort the
2208 script before any changes are made."""
2209 return self._DoCall("IncrementalOTA_VerifyEnd")
2210
Doug Zongkere5ff5902012-01-17 10:55:37 -08002211 def IncrementalOTA_InstallBegin(self):
2212 """Called at the start of incremental OTA installation (after
2213 verification is complete)."""
2214 return self._DoCall("IncrementalOTA_InstallBegin")
2215
Yifan Hong10c530d2018-12-27 17:34:18 -08002216 def IncrementalOTA_GetBlockDifferences(self):
2217 """Called during incremental OTA installation and verification.
2218 Implementation should return a list of BlockDifference objects describing
2219 the update on each additional partitions.
2220 """
2221 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2222
Doug Zongker05d3dea2009-06-22 11:32:31 -07002223 def IncrementalOTA_InstallEnd(self):
2224 """Called at the end of incremental OTA installation; typically
2225 this is used to install the image for the device's baseband
2226 processor."""
2227 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002228
Tao Bao9bc6bb22015-11-09 16:58:28 -08002229 def VerifyOTA_Assertions(self):
2230 return self._DoCall("VerifyOTA_Assertions")
2231
Tao Bao76def242017-11-21 09:25:31 -08002232
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002233class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002234 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002235 self.name = name
2236 self.data = data
2237 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002238 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002239 self.sha1 = sha1(data).hexdigest()
2240
2241 @classmethod
2242 def FromLocalFile(cls, name, diskname):
2243 f = open(diskname, "rb")
2244 data = f.read()
2245 f.close()
2246 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002247
2248 def WriteToTemp(self):
2249 t = tempfile.NamedTemporaryFile()
2250 t.write(self.data)
2251 t.flush()
2252 return t
2253
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002254 def WriteToDir(self, d):
2255 with open(os.path.join(d, self.name), "wb") as fp:
2256 fp.write(self.data)
2257
Geremy Condra36bd3652014-02-06 19:45:10 -08002258 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002259 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002260
Tao Bao76def242017-11-21 09:25:31 -08002261
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002262DIFF_PROGRAM_BY_EXT = {
2263 ".gz" : "imgdiff",
2264 ".zip" : ["imgdiff", "-z"],
2265 ".jar" : ["imgdiff", "-z"],
2266 ".apk" : ["imgdiff", "-z"],
2267 ".img" : "imgdiff",
2268 }
2269
Tao Bao76def242017-11-21 09:25:31 -08002270
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002271class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002272 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002273 self.tf = tf
2274 self.sf = sf
2275 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002276 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002277
2278 def ComputePatch(self):
2279 """Compute the patch (as a string of data) needed to turn sf into
2280 tf. Returns the same tuple as GetPatch()."""
2281
2282 tf = self.tf
2283 sf = self.sf
2284
Doug Zongker24cd2802012-08-14 16:36:15 -07002285 if self.diff_program:
2286 diff_program = self.diff_program
2287 else:
2288 ext = os.path.splitext(tf.name)[1]
2289 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002290
2291 ttemp = tf.WriteToTemp()
2292 stemp = sf.WriteToTemp()
2293
2294 ext = os.path.splitext(tf.name)[1]
2295
2296 try:
2297 ptemp = tempfile.NamedTemporaryFile()
2298 if isinstance(diff_program, list):
2299 cmd = copy.copy(diff_program)
2300 else:
2301 cmd = [diff_program]
2302 cmd.append(stemp.name)
2303 cmd.append(ttemp.name)
2304 cmd.append(ptemp.name)
2305 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002306 err = []
2307 def run():
2308 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002309 if e:
2310 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002311 th = threading.Thread(target=run)
2312 th.start()
2313 th.join(timeout=300) # 5 mins
2314 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002315 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002316 p.terminate()
2317 th.join(5)
2318 if th.is_alive():
2319 p.kill()
2320 th.join()
2321
Tianjie Xua2a9f992018-01-05 15:15:54 -08002322 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002323 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002324 self.patch = None
2325 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002326 diff = ptemp.read()
2327 finally:
2328 ptemp.close()
2329 stemp.close()
2330 ttemp.close()
2331
2332 self.patch = diff
2333 return self.tf, self.sf, self.patch
2334
2335
2336 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002337 """Returns a tuple of (target_file, source_file, patch_data).
2338
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002339 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002340 computing the patch failed.
2341 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002342 return self.tf, self.sf, self.patch
2343
2344
2345def ComputeDifferences(diffs):
2346 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002347 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002348
2349 # Do the largest files first, to try and reduce the long-pole effect.
2350 by_size = [(i.tf.size, i) for i in diffs]
2351 by_size.sort(reverse=True)
2352 by_size = [i[1] for i in by_size]
2353
2354 lock = threading.Lock()
2355 diff_iter = iter(by_size) # accessed under lock
2356
2357 def worker():
2358 try:
2359 lock.acquire()
2360 for d in diff_iter:
2361 lock.release()
2362 start = time.time()
2363 d.ComputePatch()
2364 dur = time.time() - start
2365 lock.acquire()
2366
2367 tf, sf, patch = d.GetPatch()
2368 if sf.name == tf.name:
2369 name = tf.name
2370 else:
2371 name = "%s (%s)" % (tf.name, sf.name)
2372 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002373 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002374 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002375 logger.info(
2376 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2377 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002378 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002379 except Exception:
2380 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002381 raise
2382
2383 # start worker threads; wait for them all to finish.
2384 threads = [threading.Thread(target=worker)
2385 for i in range(OPTIONS.worker_threads)]
2386 for th in threads:
2387 th.start()
2388 while threads:
2389 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002390
2391
Dan Albert8b72aef2015-03-23 19:13:21 -07002392class BlockDifference(object):
2393 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002394 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002395 self.tgt = tgt
2396 self.src = src
2397 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002398 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002399 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002400
Tao Baodd2a5892015-03-12 12:32:37 -07002401 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002402 version = max(
2403 int(i) for i in
2404 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002405 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002406 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002407
Tianjie Xu41976c72019-07-03 13:57:01 -07002408 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2409 version=self.version,
2410 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002411 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002412 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002413 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002414 self.touched_src_ranges = b.touched_src_ranges
2415 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002416
Yifan Hong10c530d2018-12-27 17:34:18 -08002417 # On devices with dynamic partitions, for new partitions,
2418 # src is None but OPTIONS.source_info_dict is not.
2419 if OPTIONS.source_info_dict is None:
2420 is_dynamic_build = OPTIONS.info_dict.get(
2421 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002422 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002423 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002424 is_dynamic_build = OPTIONS.source_info_dict.get(
2425 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002426 is_dynamic_source = partition in shlex.split(
2427 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002428
Yifan Hongbb2658d2019-01-25 12:30:58 -08002429 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002430 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2431
Yifan Hongbb2658d2019-01-25 12:30:58 -08002432 # For dynamic partitions builds, check partition list in both source
2433 # and target build because new partitions may be added, and existing
2434 # partitions may be removed.
2435 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2436
Yifan Hong10c530d2018-12-27 17:34:18 -08002437 if is_dynamic:
2438 self.device = 'map_partition("%s")' % partition
2439 else:
2440 if OPTIONS.source_info_dict is None:
2441 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2442 else:
2443 _, device_path = GetTypeAndDevice("/" + partition,
2444 OPTIONS.source_info_dict)
2445 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002446
Tao Baod8d14be2016-02-04 14:26:02 -08002447 @property
2448 def required_cache(self):
2449 return self._required_cache
2450
Tao Bao76def242017-11-21 09:25:31 -08002451 def WriteScript(self, script, output_zip, progress=None,
2452 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002453 if not self.src:
2454 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002455 script.Print("Patching %s image unconditionally..." % (self.partition,))
2456 else:
2457 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002458
Dan Albert8b72aef2015-03-23 19:13:21 -07002459 if progress:
2460 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002461 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002462
2463 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002464 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002465
Tao Bao9bc6bb22015-11-09 16:58:28 -08002466 def WriteStrictVerifyScript(self, script):
2467 """Verify all the blocks in the care_map, including clobbered blocks.
2468
2469 This differs from the WriteVerifyScript() function: a) it prints different
2470 error messages; b) it doesn't allow half-way updated images to pass the
2471 verification."""
2472
2473 partition = self.partition
2474 script.Print("Verifying %s..." % (partition,))
2475 ranges = self.tgt.care_map
2476 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002477 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002478 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2479 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002480 self.device, ranges_str,
2481 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002482 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002483 script.AppendExtra("")
2484
Tao Baod522bdc2016-04-12 15:53:16 -07002485 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002486 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002487
2488 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002489 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002490 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002491
2492 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002493 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002494 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002495 ranges = self.touched_src_ranges
2496 expected_sha1 = self.touched_src_sha1
2497 else:
2498 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2499 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002500
2501 # No blocks to be checked, skipping.
2502 if not ranges:
2503 return
2504
Tao Bao5ece99d2015-05-12 11:42:31 -07002505 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002506 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002507 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002508 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2509 '"%s.patch.dat")) then' % (
2510 self.device, ranges_str, expected_sha1,
2511 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002512 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002513 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002514
Tianjie Xufc3422a2015-12-15 11:53:59 -08002515 if self.version >= 4:
2516
2517 # Bug: 21124327
2518 # When generating incrementals for the system and vendor partitions in
2519 # version 4 or newer, explicitly check the first block (which contains
2520 # the superblock) of the partition to see if it's what we expect. If
2521 # this check fails, give an explicit log message about the partition
2522 # having been remounted R/W (the most likely explanation).
2523 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002524 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002525
2526 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002527 if partition == "system":
2528 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2529 else:
2530 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002531 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002532 'ifelse (block_image_recover({device}, "{ranges}") && '
2533 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002534 'package_extract_file("{partition}.transfer.list"), '
2535 '"{partition}.new.dat", "{partition}.patch.dat"), '
2536 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002537 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002538 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002539 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002540
Tao Baodd2a5892015-03-12 12:32:37 -07002541 # Abort the OTA update. Note that the incremental OTA cannot be applied
2542 # even if it may match the checksum of the target partition.
2543 # a) If version < 3, operations like move and erase will make changes
2544 # unconditionally and damage the partition.
2545 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002546 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002547 if partition == "system":
2548 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2549 else:
2550 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2551 script.AppendExtra((
2552 'abort("E%d: %s partition has unexpected contents");\n'
2553 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002554
Yifan Hong10c530d2018-12-27 17:34:18 -08002555 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002556 partition = self.partition
2557 script.Print('Verifying the updated %s image...' % (partition,))
2558 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2559 ranges = self.tgt.care_map
2560 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002561 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002562 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002563 self.device, ranges_str,
2564 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002565
2566 # Bug: 20881595
2567 # Verify that extended blocks are really zeroed out.
2568 if self.tgt.extended:
2569 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002570 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002571 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002572 self.device, ranges_str,
2573 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002574 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002575 if partition == "system":
2576 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2577 else:
2578 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002579 script.AppendExtra(
2580 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002581 ' abort("E%d: %s partition has unexpected non-zero contents after '
2582 'OTA update");\n'
2583 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002584 else:
2585 script.Print('Verified the updated %s image.' % (partition,))
2586
Tianjie Xu209db462016-05-24 17:34:52 -07002587 if partition == "system":
2588 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2589 else:
2590 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2591
Tao Bao5fcaaef2015-06-01 13:40:49 -07002592 script.AppendExtra(
2593 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002594 ' abort("E%d: %s partition has unexpected contents after OTA '
2595 'update");\n'
2596 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002597
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002598 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002599 ZipWrite(output_zip,
2600 '{}.transfer.list'.format(self.path),
2601 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002602
Tao Bao76def242017-11-21 09:25:31 -08002603 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2604 # its size. Quailty 9 almost triples the compression time but doesn't
2605 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002606 # zip | brotli(quality 6) | brotli(quality 9)
2607 # compressed_size: 942M | 869M (~8% reduced) | 854M
2608 # compression_time: 75s | 265s | 719s
2609 # decompression_time: 15s | 25s | 25s
2610
2611 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002612 brotli_cmd = ['brotli', '--quality=6',
2613 '--output={}.new.dat.br'.format(self.path),
2614 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002615 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002616 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002617
2618 new_data_name = '{}.new.dat.br'.format(self.partition)
2619 ZipWrite(output_zip,
2620 '{}.new.dat.br'.format(self.path),
2621 new_data_name,
2622 compress_type=zipfile.ZIP_STORED)
2623 else:
2624 new_data_name = '{}.new.dat'.format(self.partition)
2625 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2626
Dan Albert8e0178d2015-01-27 15:53:15 -08002627 ZipWrite(output_zip,
2628 '{}.patch.dat'.format(self.path),
2629 '{}.patch.dat'.format(self.partition),
2630 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002631
Tianjie Xu209db462016-05-24 17:34:52 -07002632 if self.partition == "system":
2633 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2634 else:
2635 code = ErrorCode.VENDOR_UPDATE_FAILURE
2636
Yifan Hong10c530d2018-12-27 17:34:18 -08002637 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002638 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002639 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002640 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002641 device=self.device, partition=self.partition,
2642 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002643 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002644
Dan Albert8b72aef2015-03-23 19:13:21 -07002645 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002646 data = source.ReadRangeSet(ranges)
2647 ctx = sha1()
2648
2649 for p in data:
2650 ctx.update(p)
2651
2652 return ctx.hexdigest()
2653
Tao Baoe9b61912015-07-09 17:37:49 -07002654 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2655 """Return the hash value for all zero blocks."""
2656 zero_block = '\x00' * 4096
2657 ctx = sha1()
2658 for _ in range(num_blocks):
2659 ctx.update(zero_block)
2660
2661 return ctx.hexdigest()
2662
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002663
Tianjie Xu41976c72019-07-03 13:57:01 -07002664# Expose these two classes to support vendor-specific scripts
2665DataImage = images.DataImage
2666EmptyImage = images.EmptyImage
2667
Tao Bao76def242017-11-21 09:25:31 -08002668
Doug Zongker96a57e72010-09-26 14:57:41 -07002669# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002670PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002671 "ext4": "EMMC",
2672 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002673 "f2fs": "EMMC",
2674 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002675}
Doug Zongker96a57e72010-09-26 14:57:41 -07002676
Tao Bao76def242017-11-21 09:25:31 -08002677
Doug Zongker96a57e72010-09-26 14:57:41 -07002678def GetTypeAndDevice(mount_point, info):
2679 fstab = info["fstab"]
2680 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002681 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2682 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002683 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002684 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002685
2686
2687def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002688 """Parses and converts a PEM-encoded certificate into DER-encoded.
2689
2690 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2691
2692 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002693 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002694 """
2695 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002696 save = False
2697 for line in data.split("\n"):
2698 if "--END CERTIFICATE--" in line:
2699 break
2700 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002701 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002702 if "--BEGIN CERTIFICATE--" in line:
2703 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002704 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002705 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002706
Tao Bao04e1f012018-02-04 12:13:35 -08002707
2708def ExtractPublicKey(cert):
2709 """Extracts the public key (PEM-encoded) from the given certificate file.
2710
2711 Args:
2712 cert: The certificate filename.
2713
2714 Returns:
2715 The public key string.
2716
2717 Raises:
2718 AssertionError: On non-zero return from 'openssl'.
2719 """
2720 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2721 # While openssl 1.1 writes the key into the given filename followed by '-out',
2722 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2723 # stdout instead.
2724 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2725 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2726 pubkey, stderrdata = proc.communicate()
2727 assert proc.returncode == 0, \
2728 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2729 return pubkey
2730
2731
Tao Bao1ac886e2019-06-26 11:58:22 -07002732def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002733 """Extracts the AVB public key from the given public or private key.
2734
2735 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002736 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002737 key: The input key file, which should be PEM-encoded public or private key.
2738
2739 Returns:
2740 The path to the extracted AVB public key file.
2741 """
2742 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2743 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002744 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002745 return output
2746
2747
Doug Zongker412c02f2014-02-13 10:58:24 -08002748def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2749 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002750 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002751
Tao Bao6d5d6232018-03-09 17:04:42 -08002752 Most of the space in the boot and recovery images is just the kernel, which is
2753 identical for the two, so the resulting patch should be efficient. Add it to
2754 the output zip, along with a shell script that is run from init.rc on first
2755 boot to actually do the patching and install the new recovery image.
2756
2757 Args:
2758 input_dir: The top-level input directory of the target-files.zip.
2759 output_sink: The callback function that writes the result.
2760 recovery_img: File object for the recovery image.
2761 boot_img: File objects for the boot image.
2762 info_dict: A dict returned by common.LoadInfoDict() on the input
2763 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002764 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002765 if info_dict is None:
2766 info_dict = OPTIONS.info_dict
2767
Tao Bao6d5d6232018-03-09 17:04:42 -08002768 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002769 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2770
2771 if board_uses_vendorimage:
2772 # In this case, the output sink is rooted at VENDOR
2773 recovery_img_path = "etc/recovery.img"
2774 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2775 sh_dir = "bin"
2776 else:
2777 # In this case the output sink is rooted at SYSTEM
2778 recovery_img_path = "vendor/etc/recovery.img"
2779 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2780 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002781
Tao Baof2cffbd2015-07-22 12:33:18 -07002782 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002783 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002784
2785 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002786 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002787 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002788 # With system-root-image, boot and recovery images will have mismatching
2789 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2790 # to handle such a case.
2791 if system_root_image:
2792 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002793 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002794 assert not os.path.exists(path)
2795 else:
2796 diff_program = ["imgdiff"]
2797 if os.path.exists(path):
2798 diff_program.append("-b")
2799 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002800 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002801 else:
2802 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002803
2804 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2805 _, _, patch = d.ComputePatch()
2806 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002807
Dan Albertebb19aa2015-03-27 19:11:53 -07002808 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002809 # The following GetTypeAndDevice()s need to use the path in the target
2810 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002811 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2812 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2813 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002814 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002815
Tao Baof2cffbd2015-07-22 12:33:18 -07002816 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002817
2818 # Note that we use /vendor to refer to the recovery resources. This will
2819 # work for a separate vendor partition mounted at /vendor or a
2820 # /system/vendor subdirectory on the system partition, for which init will
2821 # create a symlink from /vendor to /system/vendor.
2822
2823 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002824if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2825 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002826 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002827 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2828 log -t recovery "Installing new recovery image: succeeded" || \\
2829 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002830else
2831 log -t recovery "Recovery image already installed"
2832fi
2833""" % {'type': recovery_type,
2834 'device': recovery_device,
2835 'sha1': recovery_img.sha1,
2836 'size': recovery_img.size}
2837 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002838 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002839if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2840 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002841 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002842 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2843 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2844 log -t recovery "Installing new recovery image: succeeded" || \\
2845 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002846else
2847 log -t recovery "Recovery image already installed"
2848fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002849""" % {'boot_size': boot_img.size,
2850 'boot_sha1': boot_img.sha1,
2851 'recovery_size': recovery_img.size,
2852 'recovery_sha1': recovery_img.sha1,
2853 'boot_type': boot_type,
2854 'boot_device': boot_device,
2855 'recovery_type': recovery_type,
2856 'recovery_device': recovery_device,
2857 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002858
Bill Peckhame868aec2019-09-17 17:06:47 -07002859 # The install script location moved from /system/etc to /system/bin in the L
2860 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2861 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002862
Tao Bao32fcdab2018-10-12 10:30:39 -07002863 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002864
Tao Baoda30cfa2017-12-01 16:19:46 -08002865 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002866
2867
2868class DynamicPartitionUpdate(object):
2869 def __init__(self, src_group=None, tgt_group=None, progress=None,
2870 block_difference=None):
2871 self.src_group = src_group
2872 self.tgt_group = tgt_group
2873 self.progress = progress
2874 self.block_difference = block_difference
2875
2876 @property
2877 def src_size(self):
2878 if not self.block_difference:
2879 return 0
2880 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2881
2882 @property
2883 def tgt_size(self):
2884 if not self.block_difference:
2885 return 0
2886 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2887
2888 @staticmethod
2889 def _GetSparseImageSize(img):
2890 if not img:
2891 return 0
2892 return img.blocksize * img.total_blocks
2893
2894
2895class DynamicGroupUpdate(object):
2896 def __init__(self, src_size=None, tgt_size=None):
2897 # None: group does not exist. 0: no size limits.
2898 self.src_size = src_size
2899 self.tgt_size = tgt_size
2900
2901
2902class DynamicPartitionsDifference(object):
2903 def __init__(self, info_dict, block_diffs, progress_dict=None,
2904 source_info_dict=None):
2905 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002906 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002907
2908 self._remove_all_before_apply = False
2909 if source_info_dict is None:
2910 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07002911 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002912
Tao Baof1113e92019-06-18 12:10:14 -07002913 block_diff_dict = collections.OrderedDict(
2914 [(e.partition, e) for e in block_diffs])
2915
Yifan Hong10c530d2018-12-27 17:34:18 -08002916 assert len(block_diff_dict) == len(block_diffs), \
2917 "Duplicated BlockDifference object for {}".format(
2918 [partition for partition, count in
2919 collections.Counter(e.partition for e in block_diffs).items()
2920 if count > 1])
2921
Yifan Hong79997e52019-01-23 16:56:19 -08002922 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002923
2924 for p, block_diff in block_diff_dict.items():
2925 self._partition_updates[p] = DynamicPartitionUpdate()
2926 self._partition_updates[p].block_difference = block_diff
2927
2928 for p, progress in progress_dict.items():
2929 if p in self._partition_updates:
2930 self._partition_updates[p].progress = progress
2931
2932 tgt_groups = shlex.split(info_dict.get(
2933 "super_partition_groups", "").strip())
2934 src_groups = shlex.split(source_info_dict.get(
2935 "super_partition_groups", "").strip())
2936
2937 for g in tgt_groups:
2938 for p in shlex.split(info_dict.get(
2939 "super_%s_partition_list" % g, "").strip()):
2940 assert p in self._partition_updates, \
2941 "{} is in target super_{}_partition_list but no BlockDifference " \
2942 "object is provided.".format(p, g)
2943 self._partition_updates[p].tgt_group = g
2944
2945 for g in src_groups:
2946 for p in shlex.split(source_info_dict.get(
2947 "super_%s_partition_list" % g, "").strip()):
2948 assert p in self._partition_updates, \
2949 "{} is in source super_{}_partition_list but no BlockDifference " \
2950 "object is provided.".format(p, g)
2951 self._partition_updates[p].src_group = g
2952
Yifan Hong45433e42019-01-18 13:55:25 -08002953 target_dynamic_partitions = set(shlex.split(info_dict.get(
2954 "dynamic_partition_list", "").strip()))
2955 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
2956 if u.tgt_size)
2957 assert block_diffs_with_target == target_dynamic_partitions, \
2958 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
2959 list(target_dynamic_partitions), list(block_diffs_with_target))
2960
2961 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
2962 "dynamic_partition_list", "").strip()))
2963 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
2964 if u.src_size)
2965 assert block_diffs_with_source == source_dynamic_partitions, \
2966 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
2967 list(source_dynamic_partitions), list(block_diffs_with_source))
2968
Yifan Hong10c530d2018-12-27 17:34:18 -08002969 if self._partition_updates:
2970 logger.info("Updating dynamic partitions %s",
2971 self._partition_updates.keys())
2972
Yifan Hong79997e52019-01-23 16:56:19 -08002973 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002974
2975 for g in tgt_groups:
2976 self._group_updates[g] = DynamicGroupUpdate()
2977 self._group_updates[g].tgt_size = int(info_dict.get(
2978 "super_%s_group_size" % g, "0").strip())
2979
2980 for g in src_groups:
2981 if g not in self._group_updates:
2982 self._group_updates[g] = DynamicGroupUpdate()
2983 self._group_updates[g].src_size = int(source_info_dict.get(
2984 "super_%s_group_size" % g, "0").strip())
2985
2986 self._Compute()
2987
2988 def WriteScript(self, script, output_zip, write_verify_script=False):
2989 script.Comment('--- Start patching dynamic partitions ---')
2990 for p, u in self._partition_updates.items():
2991 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2992 script.Comment('Patch partition %s' % p)
2993 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
2994 write_verify_script=False)
2995
2996 op_list_path = MakeTempFile()
2997 with open(op_list_path, 'w') as f:
2998 for line in self._op_list:
2999 f.write('{}\n'.format(line))
3000
3001 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3002
3003 script.Comment('Update dynamic partition metadata')
3004 script.AppendExtra('assert(update_dynamic_partitions('
3005 'package_extract_file("dynamic_partitions_op_list")));')
3006
3007 if write_verify_script:
3008 for p, u in self._partition_updates.items():
3009 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3010 u.block_difference.WritePostInstallVerifyScript(script)
3011 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3012
3013 for p, u in self._partition_updates.items():
3014 if u.tgt_size and u.src_size <= u.tgt_size:
3015 script.Comment('Patch partition %s' % p)
3016 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3017 write_verify_script=write_verify_script)
3018 if write_verify_script:
3019 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3020
3021 script.Comment('--- End patching dynamic partitions ---')
3022
3023 def _Compute(self):
3024 self._op_list = list()
3025
3026 def append(line):
3027 self._op_list.append(line)
3028
3029 def comment(line):
3030 self._op_list.append("# %s" % line)
3031
3032 if self._remove_all_before_apply:
3033 comment('Remove all existing dynamic partitions and groups before '
3034 'applying full OTA')
3035 append('remove_all_groups')
3036
3037 for p, u in self._partition_updates.items():
3038 if u.src_group and not u.tgt_group:
3039 append('remove %s' % p)
3040
3041 for p, u in self._partition_updates.items():
3042 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3043 comment('Move partition %s from %s to default' % (p, u.src_group))
3044 append('move %s default' % p)
3045
3046 for p, u in self._partition_updates.items():
3047 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3048 comment('Shrink partition %s from %d to %d' %
3049 (p, u.src_size, u.tgt_size))
3050 append('resize %s %s' % (p, u.tgt_size))
3051
3052 for g, u in self._group_updates.items():
3053 if u.src_size is not None and u.tgt_size is None:
3054 append('remove_group %s' % g)
3055 if (u.src_size is not None and u.tgt_size is not None and
3056 u.src_size > u.tgt_size):
3057 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3058 append('resize_group %s %d' % (g, u.tgt_size))
3059
3060 for g, u in self._group_updates.items():
3061 if u.src_size is None and u.tgt_size is not None:
3062 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3063 append('add_group %s %d' % (g, u.tgt_size))
3064 if (u.src_size is not None and u.tgt_size is not None and
3065 u.src_size < u.tgt_size):
3066 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3067 append('resize_group %s %d' % (g, u.tgt_size))
3068
3069 for p, u in self._partition_updates.items():
3070 if u.tgt_group and not u.src_group:
3071 comment('Add partition %s to group %s' % (p, u.tgt_group))
3072 append('add %s %s' % (p, u.tgt_group))
3073
3074 for p, u in self._partition_updates.items():
3075 if u.tgt_size and u.src_size < u.tgt_size:
3076 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3077 append('resize %s %d' % (p, u.tgt_size))
3078
3079 for p, u in self._partition_updates.items():
3080 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3081 comment('Move partition %s from default to %s' %
3082 (p, u.tgt_group))
3083 append('move %s %s' % (p, u.tgt_group))