blob: f846b18ff31da003c85d7471e733f93c84fdb219 [file] [log] [blame]
Doug Zongkereef39442009-04-02 12:14:19 -07001# Copyright (C) 2008 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
Tao Bao89fbb0f2017-01-10 10:47:58 -080015from __future__ import print_function
16
Tao Baoda30cfa2017-12-01 16:19:46 -080017import base64
Yifan Hong10c530d2018-12-27 17:34:18 -080018import collections
Doug Zongkerea5d7a92010-09-12 15:26:16 -070019import copy
Doug Zongker8ce7c252009-05-22 13:34:54 -070020import errno
Tao Bao0ff15de2019-03-20 11:26:06 -070021import fnmatch
Doug Zongkereef39442009-04-02 12:14:19 -070022import getopt
23import getpass
Narayan Kamatha07bf042017-08-14 14:49:21 +010024import gzip
Doug Zongker05d3dea2009-06-22 11:32:31 -070025import imp
Tao Bao32fcdab2018-10-12 10:30:39 -070026import json
27import logging
28import logging.config
Doug Zongkereef39442009-04-02 12:14:19 -070029import os
Ying Wang7e6d4e42010-12-13 16:25:36 -080030import platform
Doug Zongkereef39442009-04-02 12:14:19 -070031import re
T.R. Fullhart37e10522013-03-18 10:31:26 -070032import shlex
Doug Zongkereef39442009-04-02 12:14:19 -070033import shutil
34import subprocess
35import sys
36import tempfile
Doug Zongkerea5d7a92010-09-12 15:26:16 -070037import threading
38import time
Doug Zongker048e7ca2009-06-15 14:31:53 -070039import zipfile
Tao Bao12d87fc2018-01-31 12:18:52 -080040from hashlib import sha1, sha256
Doug Zongkereef39442009-04-02 12:14:19 -070041
Tianjie Xu41976c72019-07-03 13:57:01 -070042import images
Tao Baoc765cca2018-01-31 17:32:40 -080043import sparse_img
Tianjie Xu41976c72019-07-03 13:57:01 -070044from blockimgdiff import BlockImageDiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -070045
Tao Bao32fcdab2018-10-12 10:30:39 -070046logger = logging.getLogger(__name__)
47
Tao Bao986ee862018-10-04 15:46:16 -070048
Dan Albert8b72aef2015-03-23 19:13:21 -070049class Options(object):
Tao Baoafd92a82019-10-10 22:44:22 -070050
Dan Albert8b72aef2015-03-23 19:13:21 -070051 def __init__(self):
Tao Baoafd92a82019-10-10 22:44:22 -070052 # Set up search path, in order to find framework/ and lib64/. At the time of
53 # running this function, user-supplied search path (`--path`) hasn't been
54 # available. So the value set here is the default, which might be overridden
55 # by commandline flag later.
56 exec_path = sys.argv[0]
57 if exec_path.endswith('.py'):
58 script_name = os.path.basename(exec_path)
59 # logger hasn't been initialized yet at this point. Use print to output
60 # warnings.
61 print(
62 'Warning: releasetools script should be invoked as hermetic Python '
63 'executable -- build and run `{}` directly.'.format(script_name[:-3]),
64 file=sys.stderr)
65 self.search_path = os.path.realpath(os.path.join(exec_path, '..'))
Pavel Salomatov32676552019-03-06 20:00:45 +030066
Dan Albert8b72aef2015-03-23 19:13:21 -070067 self.signapk_path = "framework/signapk.jar" # Relative to search_path
Alex Klyubin9667b182015-12-10 13:38:50 -080068 self.signapk_shared_library_path = "lib64" # Relative to search_path
Dan Albert8b72aef2015-03-23 19:13:21 -070069 self.extra_signapk_args = []
70 self.java_path = "java" # Use the one on the path by default.
Tao Baoe95540e2016-11-08 12:08:53 -080071 self.java_args = ["-Xmx2048m"] # The default JVM args.
Dan Albert8b72aef2015-03-23 19:13:21 -070072 self.public_key_suffix = ".x509.pem"
73 self.private_key_suffix = ".pk8"
Dan Albertcd9ecc02015-03-27 16:37:23 -070074 # use otatools built boot_signer by default
75 self.boot_signer_path = "boot_signer"
Baligh Uddin601ddea2015-06-09 15:48:14 -070076 self.boot_signer_args = []
77 self.verity_signer_path = None
78 self.verity_signer_args = []
Dan Albert8b72aef2015-03-23 19:13:21 -070079 self.verbose = False
80 self.tempfiles = []
81 self.device_specific = None
82 self.extras = {}
83 self.info_dict = None
Tao Bao6f0b2192015-10-13 16:37:12 -070084 self.source_info_dict = None
85 self.target_info_dict = None
Dan Albert8b72aef2015-03-23 19:13:21 -070086 self.worker_threads = None
Tao Bao575d68a2015-08-07 19:49:45 -070087 # Stash size cannot exceed cache_size * threshold.
88 self.cache_size = None
89 self.stash_threshold = 0.8
Dan Albert8b72aef2015-03-23 19:13:21 -070090
91
92OPTIONS = Options()
Doug Zongkereef39442009-04-02 12:14:19 -070093
Tao Bao71197512018-10-11 14:08:45 -070094# The block size that's used across the releasetools scripts.
95BLOCK_SIZE = 4096
96
Doug Zongkerf6a53aa2009-12-15 15:06:55 -080097# Values for "certificate" in apkcerts that mean special things.
98SPECIAL_CERT_STRINGS = ("PRESIGNED", "EXTERNAL")
99
Tao Bao5cc0abb2019-03-21 10:18:05 -0700100# The partitions allowed to be signed by AVB (Android Verified Boot 2.0). Note
101# that system_other is not in the list because we don't want to include its
102# descriptor into vbmeta.img.
Justin Yun6151e3f2019-06-25 15:58:13 +0900103AVB_PARTITIONS = ('boot', 'dtbo', 'odm', 'product', 'recovery', 'system',
Steve Mucklee1b10862019-07-10 10:49:37 -0700104 'system_ext', 'vendor', 'vendor_boot')
Tao Bao9dd909e2017-11-14 11:27:32 -0800105
Tao Bao08c190f2019-06-03 23:07:58 -0700106# Chained VBMeta partitions.
107AVB_VBMETA_PARTITIONS = ('vbmeta_system', 'vbmeta_vendor')
108
Tianjie Xu861f4132018-09-12 11:49:33 -0700109# Partitions that should have their care_map added to META/care_map.pb
Justin Yun6151e3f2019-06-25 15:58:13 +0900110PARTITIONS_WITH_CARE_MAP = ('system', 'vendor', 'product', 'system_ext', 'odm')
Tianjie Xu861f4132018-09-12 11:49:33 -0700111
112
Tianjie Xu209db462016-05-24 17:34:52 -0700113class ErrorCode(object):
114 """Define error_codes for failures that happen during the actual
115 update package installation.
116
117 Error codes 0-999 are reserved for failures before the package
118 installation (i.e. low battery, package verification failure).
119 Detailed code in 'bootable/recovery/error_code.h' """
120
121 SYSTEM_VERIFICATION_FAILURE = 1000
122 SYSTEM_UPDATE_FAILURE = 1001
123 SYSTEM_UNEXPECTED_CONTENTS = 1002
124 SYSTEM_NONZERO_CONTENTS = 1003
125 SYSTEM_RECOVER_FAILURE = 1004
126 VENDOR_VERIFICATION_FAILURE = 2000
127 VENDOR_UPDATE_FAILURE = 2001
128 VENDOR_UNEXPECTED_CONTENTS = 2002
129 VENDOR_NONZERO_CONTENTS = 2003
130 VENDOR_RECOVER_FAILURE = 2004
131 OEM_PROP_MISMATCH = 3000
132 FINGERPRINT_MISMATCH = 3001
133 THUMBPRINT_MISMATCH = 3002
134 OLDER_BUILD = 3003
135 DEVICE_MISMATCH = 3004
136 BAD_PATCH_FILE = 3005
137 INSUFFICIENT_CACHE_SPACE = 3006
138 TUNE_PARTITION_FAILURE = 3007
139 APPLY_PATCH_FAILURE = 3008
Doug Zongkerf6a53aa2009-12-15 15:06:55 -0800140
Tao Bao80921982018-03-21 21:02:19 -0700141
Dan Albert8b72aef2015-03-23 19:13:21 -0700142class ExternalError(RuntimeError):
143 pass
Doug Zongkereef39442009-04-02 12:14:19 -0700144
145
Tao Bao32fcdab2018-10-12 10:30:39 -0700146def InitLogging():
147 DEFAULT_LOGGING_CONFIG = {
148 'version': 1,
149 'disable_existing_loggers': False,
150 'formatters': {
151 'standard': {
152 'format':
153 '%(asctime)s - %(filename)s - %(levelname)-8s: %(message)s',
154 'datefmt': '%Y-%m-%d %H:%M:%S',
155 },
156 },
157 'handlers': {
158 'default': {
159 'class': 'logging.StreamHandler',
160 'formatter': 'standard',
161 },
162 },
163 'loggers': {
164 '': {
165 'handlers': ['default'],
166 'level': 'WARNING',
167 'propagate': True,
168 }
169 }
170 }
171 env_config = os.getenv('LOGGING_CONFIG')
172 if env_config:
173 with open(env_config) as f:
174 config = json.load(f)
175 else:
176 config = DEFAULT_LOGGING_CONFIG
177
178 # Increase the logging level for verbose mode.
179 if OPTIONS.verbose:
180 config = copy.deepcopy(DEFAULT_LOGGING_CONFIG)
181 config['loggers']['']['level'] = 'INFO'
182
183 logging.config.dictConfig(config)
184
185
Tao Bao39451582017-05-04 11:10:47 -0700186def Run(args, verbose=None, **kwargs):
Tao Bao73dd4f42018-10-04 16:25:33 -0700187 """Creates and returns a subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700188
Tao Bao73dd4f42018-10-04 16:25:33 -0700189 Args:
190 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700191 verbose: Whether the commands should be shown. Default to the global
192 verbosity if unspecified.
Tao Bao73dd4f42018-10-04 16:25:33 -0700193 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
194 stdin, etc. stdout and stderr will default to subprocess.PIPE and
195 subprocess.STDOUT respectively unless caller specifies any of them.
Tao Baoda30cfa2017-12-01 16:19:46 -0800196 universal_newlines will default to True, as most of the users in
197 releasetools expect string output.
Tao Bao73dd4f42018-10-04 16:25:33 -0700198
199 Returns:
200 A subprocess.Popen object.
Tao Bao39451582017-05-04 11:10:47 -0700201 """
Tao Bao73dd4f42018-10-04 16:25:33 -0700202 if 'stdout' not in kwargs and 'stderr' not in kwargs:
203 kwargs['stdout'] = subprocess.PIPE
204 kwargs['stderr'] = subprocess.STDOUT
Tao Baoda30cfa2017-12-01 16:19:46 -0800205 if 'universal_newlines' not in kwargs:
206 kwargs['universal_newlines'] = True
Tao Bao32fcdab2018-10-12 10:30:39 -0700207 # Don't log any if caller explicitly says so.
208 if verbose != False:
209 logger.info(" Running: \"%s\"", " ".join(args))
Doug Zongkereef39442009-04-02 12:14:19 -0700210 return subprocess.Popen(args, **kwargs)
211
212
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800213def RunAndWait(args, verbose=None, **kwargs):
Bill Peckham889b0c62019-02-21 18:53:37 -0800214 """Runs the given command waiting for it to complete.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800215
216 Args:
217 args: The command represented as a list of strings.
218 verbose: Whether the commands should be shown. Default to the global
219 verbosity if unspecified.
220 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
221 stdin, etc. stdout and stderr will default to subprocess.PIPE and
222 subprocess.STDOUT respectively unless caller specifies any of them.
223
Bill Peckham889b0c62019-02-21 18:53:37 -0800224 Raises:
225 ExternalError: On non-zero exit from the command.
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800226 """
227 proc = Run(args, verbose=verbose, **kwargs)
228 proc.wait()
Bill Peckham889b0c62019-02-21 18:53:37 -0800229
230 if proc.returncode != 0:
231 raise ExternalError(
232 "Failed to run command '{}' (exit code {})".format(
233 args, proc.returncode))
Bill Peckhame9eb5f92019-02-01 15:52:10 -0800234
235
Tao Bao986ee862018-10-04 15:46:16 -0700236def RunAndCheckOutput(args, verbose=None, **kwargs):
237 """Runs the given command and returns the output.
238
239 Args:
240 args: The command represented as a list of strings.
Tao Bao32fcdab2018-10-12 10:30:39 -0700241 verbose: Whether the commands should be shown. Default to the global
242 verbosity if unspecified.
Tao Bao986ee862018-10-04 15:46:16 -0700243 kwargs: Any additional args to be passed to subprocess.Popen(), such as env,
244 stdin, etc. stdout and stderr will default to subprocess.PIPE and
245 subprocess.STDOUT respectively unless caller specifies any of them.
246
247 Returns:
248 The output string.
249
250 Raises:
251 ExternalError: On non-zero exit from the command.
252 """
Tao Bao986ee862018-10-04 15:46:16 -0700253 proc = Run(args, verbose=verbose, **kwargs)
254 output, _ = proc.communicate()
Regnier, Philippe2f7e11e2019-05-22 10:10:57 +0800255 if output is None:
256 output = ""
Tao Bao32fcdab2018-10-12 10:30:39 -0700257 # Don't log any if caller explicitly says so.
258 if verbose != False:
259 logger.info("%s", output.rstrip())
Tao Bao986ee862018-10-04 15:46:16 -0700260 if proc.returncode != 0:
261 raise ExternalError(
262 "Failed to run command '{}' (exit code {}):\n{}".format(
263 args, proc.returncode, output))
264 return output
265
266
Tao Baoc765cca2018-01-31 17:32:40 -0800267def RoundUpTo4K(value):
268 rounded_up = value + 4095
269 return rounded_up - (rounded_up % 4096)
270
271
Ying Wang7e6d4e42010-12-13 16:25:36 -0800272def CloseInheritedPipes():
273 """ Gmake in MAC OS has file descriptor (PIPE) leak. We close those fds
274 before doing other work."""
275 if platform.system() != "Darwin":
276 return
277 for d in range(3, 1025):
278 try:
279 stat = os.fstat(d)
280 if stat is not None:
281 pipebit = stat[0] & 0x1000
282 if pipebit != 0:
283 os.close(d)
284 except OSError:
285 pass
286
287
Tao Bao1c320f82019-10-04 23:25:12 -0700288class BuildInfo(object):
289 """A class that holds the information for a given build.
290
291 This class wraps up the property querying for a given source or target build.
292 It abstracts away the logic of handling OEM-specific properties, and caches
293 the commonly used properties such as fingerprint.
294
295 There are two types of info dicts: a) build-time info dict, which is generated
296 at build time (i.e. included in a target_files zip); b) OEM info dict that is
297 specified at package generation time (via command line argument
298 '--oem_settings'). If a build doesn't use OEM-specific properties (i.e. not
299 having "oem_fingerprint_properties" in build-time info dict), all the queries
300 would be answered based on build-time info dict only. Otherwise if using
301 OEM-specific properties, some of them will be calculated from two info dicts.
302
303 Users can query properties similarly as using a dict() (e.g. info['fstab']),
304 or to query build properties via GetBuildProp() or GetVendorBuildProp().
305
306 Attributes:
307 info_dict: The build-time info dict.
308 is_ab: Whether it's a build that uses A/B OTA.
309 oem_dicts: A list of OEM dicts.
310 oem_props: A list of OEM properties that should be read from OEM dicts; None
311 if the build doesn't use any OEM-specific property.
312 fingerprint: The fingerprint of the build, which would be calculated based
313 on OEM properties if applicable.
314 device: The device name, which could come from OEM dicts if applicable.
315 """
316
317 _RO_PRODUCT_RESOLVE_PROPS = ["ro.product.brand", "ro.product.device",
318 "ro.product.manufacturer", "ro.product.model",
319 "ro.product.name"]
320 _RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER = ["product", "odm", "vendor",
321 "system_ext", "system"]
322
Tao Bao3ed35d32019-10-07 20:48:48 -0700323 def __init__(self, info_dict, oem_dicts=None):
Tao Bao1c320f82019-10-04 23:25:12 -0700324 """Initializes a BuildInfo instance with the given dicts.
325
326 Note that it only wraps up the given dicts, without making copies.
327
328 Arguments:
329 info_dict: The build-time info dict.
330 oem_dicts: A list of OEM dicts (which is parsed from --oem_settings). Note
331 that it always uses the first dict to calculate the fingerprint or the
332 device name. The rest would be used for asserting OEM properties only
333 (e.g. one package can be installed on one of these devices).
334
335 Raises:
336 ValueError: On invalid inputs.
337 """
338 self.info_dict = info_dict
339 self.oem_dicts = oem_dicts
340
341 self._is_ab = info_dict.get("ab_update") == "true"
342 self._oem_props = info_dict.get("oem_fingerprint_properties")
343
344 if self._oem_props:
345 assert oem_dicts, "OEM source required for this build"
346
347 # These two should be computed only after setting self._oem_props.
348 self._device = self.GetOemProperty("ro.product.device")
349 self._fingerprint = self.CalculateFingerprint()
350
351 # Sanity check the build fingerprint.
352 if (' ' in self._fingerprint or
353 any(ord(ch) > 127 for ch in self._fingerprint)):
354 raise ValueError(
355 'Invalid build fingerprint: "{}". See the requirement in Android CDD '
356 '3.2.2. Build Parameters.'.format(self._fingerprint))
357
358 @property
359 def is_ab(self):
360 return self._is_ab
361
362 @property
363 def device(self):
364 return self._device
365
366 @property
367 def fingerprint(self):
368 return self._fingerprint
369
370 @property
371 def vendor_fingerprint(self):
372 return self._fingerprint_of("vendor")
373
374 @property
375 def product_fingerprint(self):
376 return self._fingerprint_of("product")
377
378 @property
379 def odm_fingerprint(self):
380 return self._fingerprint_of("odm")
381
382 def _fingerprint_of(self, partition):
383 if partition + ".build.prop" not in self.info_dict:
384 return None
385 build_prop = self.info_dict[partition + ".build.prop"]
386 if "ro." + partition + ".build.fingerprint" in build_prop:
387 return build_prop["ro." + partition + ".build.fingerprint"]
388 if "ro." + partition + ".build.thumbprint" in build_prop:
389 return build_prop["ro." + partition + ".build.thumbprint"]
390 return None
391
392 @property
393 def oem_props(self):
394 return self._oem_props
395
396 def __getitem__(self, key):
397 return self.info_dict[key]
398
399 def __setitem__(self, key, value):
400 self.info_dict[key] = value
401
402 def get(self, key, default=None):
403 return self.info_dict.get(key, default)
404
405 def items(self):
406 return self.info_dict.items()
407
408 def GetBuildProp(self, prop):
409 """Returns the inquired build property."""
410 if prop in BuildInfo._RO_PRODUCT_RESOLVE_PROPS:
411 return self._ResolveRoProductBuildProp(prop)
412
413 try:
414 return self.info_dict.get("build.prop", {})[prop]
415 except KeyError:
416 raise ExternalError("couldn't find %s in build.prop" % (prop,))
417
418 def _ResolveRoProductBuildProp(self, prop):
419 """Resolves the inquired ro.product.* build property"""
420 prop_val = self.info_dict.get("build.prop", {}).get(prop)
421 if prop_val:
422 return prop_val
423
424 source_order_val = self.info_dict.get("build.prop", {}).get(
425 "ro.product.property_source_order")
426 if source_order_val:
427 source_order = source_order_val.split(",")
428 else:
429 source_order = BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
430
431 # Check that all sources in ro.product.property_source_order are valid
432 if any([x not in BuildInfo._RO_PRODUCT_PROPS_DEFAULT_SOURCE_ORDER
433 for x in source_order]):
434 raise ExternalError(
435 "Invalid ro.product.property_source_order '{}'".format(source_order))
436
437 for source in source_order:
438 source_prop = prop.replace(
439 "ro.product", "ro.product.{}".format(source), 1)
440 prop_val = self.info_dict.get(
441 "{}.build.prop".format(source), {}).get(source_prop)
442 if prop_val:
443 return prop_val
444
445 raise ExternalError("couldn't resolve {}".format(prop))
446
447 def GetVendorBuildProp(self, prop):
448 """Returns the inquired vendor build property."""
449 try:
450 return self.info_dict.get("vendor.build.prop", {})[prop]
451 except KeyError:
452 raise ExternalError(
453 "couldn't find %s in vendor.build.prop" % (prop,))
454
455 def GetOemProperty(self, key):
456 if self.oem_props is not None and key in self.oem_props:
457 return self.oem_dicts[0][key]
458 return self.GetBuildProp(key)
459
460 def CalculateFingerprint(self):
461 if self.oem_props is None:
462 try:
463 return self.GetBuildProp("ro.build.fingerprint")
464 except ExternalError:
465 return "{}/{}/{}:{}/{}/{}:{}/{}".format(
466 self.GetBuildProp("ro.product.brand"),
467 self.GetBuildProp("ro.product.name"),
468 self.GetBuildProp("ro.product.device"),
469 self.GetBuildProp("ro.build.version.release"),
470 self.GetBuildProp("ro.build.id"),
471 self.GetBuildProp("ro.build.version.incremental"),
472 self.GetBuildProp("ro.build.type"),
473 self.GetBuildProp("ro.build.tags"))
474 return "%s/%s/%s:%s" % (
475 self.GetOemProperty("ro.product.brand"),
476 self.GetOemProperty("ro.product.name"),
477 self.GetOemProperty("ro.product.device"),
478 self.GetBuildProp("ro.build.thumbprint"))
479
480 def WriteMountOemScript(self, script):
481 assert self.oem_props is not None
482 recovery_mount_options = self.info_dict.get("recovery_mount_options")
483 script.Mount("/oem", recovery_mount_options)
484
485 def WriteDeviceAssertions(self, script, oem_no_mount):
486 # Read the property directly if not using OEM properties.
487 if not self.oem_props:
488 script.AssertDevice(self.device)
489 return
490
491 # Otherwise assert OEM properties.
492 if not self.oem_dicts:
493 raise ExternalError(
494 "No OEM file provided to answer expected assertions")
495
496 for prop in self.oem_props.split():
497 values = []
498 for oem_dict in self.oem_dicts:
499 if prop in oem_dict:
500 values.append(oem_dict[prop])
501 if not values:
502 raise ExternalError(
503 "The OEM file is missing the property %s" % (prop,))
504 script.AssertOemProperty(prop, values, oem_no_mount)
505
506
Tao Bao410ad8b2018-08-24 12:08:38 -0700507def LoadInfoDict(input_file, repacking=False):
508 """Loads the key/value pairs from the given input target_files.
509
510 It reads `META/misc_info.txt` file in the target_files input, does sanity
511 checks and returns the parsed key/value pairs for to the given build. It's
512 usually called early when working on input target_files files, e.g. when
513 generating OTAs, or signing builds. Note that the function may be called
514 against an old target_files file (i.e. from past dessert releases). So the
515 property parsing needs to be backward compatible.
516
517 In a `META/misc_info.txt`, a few properties are stored as links to the files
518 in the PRODUCT_OUT directory. It works fine with the build system. However,
519 they are no longer available when (re)generating images from target_files zip.
520 When `repacking` is True, redirect these properties to the actual files in the
521 unzipped directory.
522
523 Args:
524 input_file: The input target_files file, which could be an open
525 zipfile.ZipFile instance, or a str for the dir that contains the files
526 unzipped from a target_files file.
527 repacking: Whether it's trying repack an target_files file after loading the
528 info dict (default: False). If so, it will rewrite a few loaded
529 properties (e.g. selinux_fc, root_dir) to point to the actual files in
530 target_files file. When doing repacking, `input_file` must be a dir.
531
532 Returns:
533 A dict that contains the parsed key/value pairs.
534
535 Raises:
536 AssertionError: On invalid input arguments.
537 ValueError: On malformed input values.
538 """
539 if repacking:
540 assert isinstance(input_file, str), \
541 "input_file must be a path str when doing repacking"
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700542
Doug Zongkerc9253822014-02-04 12:17:58 -0800543 def read_helper(fn):
Dan Albert8b72aef2015-03-23 19:13:21 -0700544 if isinstance(input_file, zipfile.ZipFile):
Tao Baoda30cfa2017-12-01 16:19:46 -0800545 return input_file.read(fn).decode()
Doug Zongkerc9253822014-02-04 12:17:58 -0800546 else:
Dan Albert8b72aef2015-03-23 19:13:21 -0700547 path = os.path.join(input_file, *fn.split("/"))
Doug Zongkerc9253822014-02-04 12:17:58 -0800548 try:
549 with open(path) as f:
550 return f.read()
Dan Albert8b72aef2015-03-23 19:13:21 -0700551 except IOError as e:
Doug Zongkerc9253822014-02-04 12:17:58 -0800552 if e.errno == errno.ENOENT:
553 raise KeyError(fn)
Tao Bao6cd54732017-02-27 15:12:05 -0800554
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700555 try:
Michael Runge6e836112014-04-15 17:40:21 -0700556 d = LoadDictionaryFromLines(read_helper("META/misc_info.txt").split("\n"))
Doug Zongker37974732010-09-16 17:44:38 -0700557 except KeyError:
Tao Bao410ad8b2018-08-24 12:08:38 -0700558 raise ValueError("Failed to find META/misc_info.txt in input target-files")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700559
Tao Bao410ad8b2018-08-24 12:08:38 -0700560 if "recovery_api_version" not in d:
561 raise ValueError("Failed to find 'recovery_api_version'")
562 if "fstab_version" not in d:
563 raise ValueError("Failed to find 'fstab_version'")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800564
Tao Bao410ad8b2018-08-24 12:08:38 -0700565 if repacking:
Daniel Norman72c626f2019-05-13 15:58:14 -0700566 # "selinux_fc" properties should point to the file_contexts files
567 # (file_contexts.bin) under META/.
568 for key in d:
569 if key.endswith("selinux_fc"):
570 fc_basename = os.path.basename(d[key])
571 fc_config = os.path.join(input_file, "META", fc_basename)
572 assert os.path.exists(fc_config)
Tao Bao2c15d9e2015-07-09 11:51:16 -0700573
Daniel Norman72c626f2019-05-13 15:58:14 -0700574 d[key] = fc_config
Tao Bao2c15d9e2015-07-09 11:51:16 -0700575
Tom Cherryd14b8952018-08-09 14:26:00 -0700576 # Similarly we need to redirect "root_dir", and "root_fs_config".
Tao Bao410ad8b2018-08-24 12:08:38 -0700577 d["root_dir"] = os.path.join(input_file, "ROOT")
Tom Cherryd14b8952018-08-09 14:26:00 -0700578 d["root_fs_config"] = os.path.join(
Tao Bao410ad8b2018-08-24 12:08:38 -0700579 input_file, "META", "root_filesystem_config.txt")
Tao Bao84e75682015-07-19 02:38:53 -0700580
Tao Baof54216f2016-03-29 15:12:37 -0700581 # Redirect {system,vendor}_base_fs_file.
582 if "system_base_fs_file" in d:
583 basename = os.path.basename(d["system_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700584 system_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700585 if os.path.exists(system_base_fs_file):
586 d["system_base_fs_file"] = system_base_fs_file
587 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700588 logger.warning(
589 "Failed to find system base fs file: %s", system_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700590 del d["system_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700591
592 if "vendor_base_fs_file" in d:
593 basename = os.path.basename(d["vendor_base_fs_file"])
Tao Bao410ad8b2018-08-24 12:08:38 -0700594 vendor_base_fs_file = os.path.join(input_file, "META", basename)
Tao Baob079b502016-05-03 08:01:19 -0700595 if os.path.exists(vendor_base_fs_file):
596 d["vendor_base_fs_file"] = vendor_base_fs_file
597 else:
Tao Bao32fcdab2018-10-12 10:30:39 -0700598 logger.warning(
599 "Failed to find vendor base fs file: %s", vendor_base_fs_file)
Tao Baob079b502016-05-03 08:01:19 -0700600 del d["vendor_base_fs_file"]
Tao Baof54216f2016-03-29 15:12:37 -0700601
Doug Zongker37974732010-09-16 17:44:38 -0700602 def makeint(key):
603 if key in d:
604 d[key] = int(d[key], 0)
605
606 makeint("recovery_api_version")
607 makeint("blocksize")
608 makeint("system_size")
Daniel Rosenbergf4eabc32014-07-10 15:42:38 -0700609 makeint("vendor_size")
Doug Zongker37974732010-09-16 17:44:38 -0700610 makeint("userdata_size")
Ying Wang9f8e8db2011-11-04 11:37:01 -0700611 makeint("cache_size")
Doug Zongker37974732010-09-16 17:44:38 -0700612 makeint("recovery_size")
613 makeint("boot_size")
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800614 makeint("fstab_version")
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700615
Tao Bao765668f2019-10-04 22:03:00 -0700616 # Load recovery fstab if applicable.
617 d["fstab"] = _FindAndLoadRecoveryFstab(d, input_file, read_helper)
Tianjie Xucfa86222016-03-07 16:31:19 -0800618
Tianjie Xu861f4132018-09-12 11:49:33 -0700619 # Tries to load the build props for all partitions with care_map, including
620 # system and vendor.
621 for partition in PARTITIONS_WITH_CARE_MAP:
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800622 partition_prop = "{}.build.prop".format(partition)
623 d[partition_prop] = LoadBuildProp(
Tianjie Xu861f4132018-09-12 11:49:33 -0700624 read_helper, "{}/build.prop".format(partition.upper()))
Bowgo Tsai71a4d5c2019-05-17 23:21:48 +0800625 # Some partition might use /<partition>/etc/build.prop as the new path.
626 # TODO: try new path first when majority of them switch to the new path.
627 if not d[partition_prop]:
628 d[partition_prop] = LoadBuildProp(
629 read_helper, "{}/etc/build.prop".format(partition.upper()))
Tianjie Xu861f4132018-09-12 11:49:33 -0700630 d["build.prop"] = d["system.build.prop"]
Tao Bao12d87fc2018-01-31 12:18:52 -0800631
Tao Bao3ed35d32019-10-07 20:48:48 -0700632 # Set up the salt (based on fingerprint) that will be used when adding AVB
633 # hash / hashtree footers.
Tao Bao12d87fc2018-01-31 12:18:52 -0800634 if d.get("avb_enable") == "true":
Tao Bao3ed35d32019-10-07 20:48:48 -0700635 build_info = BuildInfo(d)
636 d["avb_salt"] = sha256(build_info.fingerprint).hexdigest()
Tao Bao12d87fc2018-01-31 12:18:52 -0800637
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700638 return d
639
Tao Baod1de6f32017-03-01 16:38:48 -0800640
Tao Baobcd1d162017-08-26 13:10:26 -0700641def LoadBuildProp(read_helper, prop_file):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700642 try:
Tao Baobcd1d162017-08-26 13:10:26 -0700643 data = read_helper(prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700644 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700645 logger.warning("Failed to read %s", prop_file)
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700646 data = ""
Michael Runge6e836112014-04-15 17:40:21 -0700647 return LoadDictionaryFromLines(data.split("\n"))
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700648
Tao Baod1de6f32017-03-01 16:38:48 -0800649
Daniel Norman4cc9df62019-07-18 10:11:07 -0700650def LoadListFromFile(file_path):
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900651 with open(file_path) as f:
Daniel Norman4cc9df62019-07-18 10:11:07 -0700652 return f.read().splitlines()
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900653
Daniel Norman4cc9df62019-07-18 10:11:07 -0700654
655def LoadDictionaryFromFile(file_path):
656 lines = LoadListFromFile(file_path)
Kiyoung Kimebe7c9c2019-06-25 17:09:55 +0900657 return LoadDictionaryFromLines(lines)
658
659
Michael Runge6e836112014-04-15 17:40:21 -0700660def LoadDictionaryFromLines(lines):
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700661 d = {}
Michael Runge6e836112014-04-15 17:40:21 -0700662 for line in lines:
Doug Zongker1eb74dd2012-08-16 16:19:00 -0700663 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -0700664 if not line or line.startswith("#"):
665 continue
Ying Wang114b46f2014-04-15 11:24:00 -0700666 if "=" in line:
667 name, value = line.split("=", 1)
668 d[name] = value
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700669 return d
670
Tao Baod1de6f32017-03-01 16:38:48 -0800671
Tianjie Xucfa86222016-03-07 16:31:19 -0800672def LoadRecoveryFSTab(read_helper, fstab_version, recovery_fstab_path,
673 system_root_image=False):
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700674 class Partition(object):
Tao Baod1de6f32017-03-01 16:38:48 -0800675 def __init__(self, mount_point, fs_type, device, length, context):
Dan Albert8b72aef2015-03-23 19:13:21 -0700676 self.mount_point = mount_point
677 self.fs_type = fs_type
678 self.device = device
679 self.length = length
Tao Bao548eb762015-06-10 12:32:41 -0700680 self.context = context
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700681
682 try:
Tianjie Xucfa86222016-03-07 16:31:19 -0800683 data = read_helper(recovery_fstab_path)
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700684 except KeyError:
Tao Bao32fcdab2018-10-12 10:30:39 -0700685 logger.warning("Failed to find %s", recovery_fstab_path)
Jeff Davidson033fbe22011-10-26 18:08:09 -0700686 data = ""
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700687
Tao Baod1de6f32017-03-01 16:38:48 -0800688 assert fstab_version == 2
689
690 d = {}
691 for line in data.split("\n"):
692 line = line.strip()
693 if not line or line.startswith("#"):
694 continue
695
696 # <src> <mnt_point> <type> <mnt_flags and options> <fs_mgr_flags>
697 pieces = line.split()
698 if len(pieces) != 5:
699 raise ValueError("malformed recovery.fstab line: \"%s\"" % (line,))
700
701 # Ignore entries that are managed by vold.
702 options = pieces[4]
703 if "voldmanaged=" in options:
704 continue
705
706 # It's a good line, parse it.
707 length = 0
708 options = options.split(",")
709 for i in options:
710 if i.startswith("length="):
711 length = int(i[7:])
Doug Zongker086cbb02011-02-17 15:54:20 -0800712 else:
Tao Baod1de6f32017-03-01 16:38:48 -0800713 # Ignore all unknown options in the unified fstab.
Dan Albert8b72aef2015-03-23 19:13:21 -0700714 continue
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800715
Tao Baod1de6f32017-03-01 16:38:48 -0800716 mount_flags = pieces[3]
717 # Honor the SELinux context if present.
718 context = None
719 for i in mount_flags.split(","):
720 if i.startswith("context="):
721 context = i
Doug Zongker086cbb02011-02-17 15:54:20 -0800722
Tao Baod1de6f32017-03-01 16:38:48 -0800723 mount_point = pieces[1]
724 d[mount_point] = Partition(mount_point=mount_point, fs_type=pieces[2],
725 device=pieces[0], length=length, context=context)
Ken Sumrall3b07cf12013-02-19 17:35:29 -0800726
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700727 # / is used for the system mount point when the root directory is included in
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700728 # system. Other areas assume system is always at "/system" so point /system
729 # at /.
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700730 if system_root_image:
Tao Baoda30cfa2017-12-01 16:19:46 -0800731 assert '/system' not in d and '/' in d
Daniel Rosenberge6853b02015-06-05 17:59:27 -0700732 d["/system"] = d["/"]
Doug Zongker9ce0fb62010-09-20 18:04:41 -0700733 return d
734
735
Tao Bao765668f2019-10-04 22:03:00 -0700736def _FindAndLoadRecoveryFstab(info_dict, input_file, read_helper):
737 """Finds the path to recovery fstab and loads its contents."""
738 # recovery fstab is only meaningful when installing an update via recovery
739 # (i.e. non-A/B OTA). Skip loading fstab if device used A/B OTA.
740 if info_dict.get('ab_update') == 'true':
741 return None
742
743 # We changed recovery.fstab path in Q, from ../RAMDISK/etc/recovery.fstab to
744 # ../RAMDISK/system/etc/recovery.fstab. This function has to handle both
745 # cases, since it may load the info_dict from an old build (e.g. when
746 # generating incremental OTAs from that build).
747 system_root_image = info_dict.get('system_root_image') == 'true'
748 if info_dict.get('no_recovery') != 'true':
749 recovery_fstab_path = 'RECOVERY/RAMDISK/system/etc/recovery.fstab'
750 if isinstance(input_file, zipfile.ZipFile):
751 if recovery_fstab_path not in input_file.namelist():
752 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
753 else:
754 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
755 if not os.path.exists(path):
756 recovery_fstab_path = 'RECOVERY/RAMDISK/etc/recovery.fstab'
757 return LoadRecoveryFSTab(
758 read_helper, info_dict['fstab_version'], recovery_fstab_path,
759 system_root_image)
760
761 if info_dict.get('recovery_as_boot') == 'true':
762 recovery_fstab_path = 'BOOT/RAMDISK/system/etc/recovery.fstab'
763 if isinstance(input_file, zipfile.ZipFile):
764 if recovery_fstab_path not in input_file.namelist():
765 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
766 else:
767 path = os.path.join(input_file, *recovery_fstab_path.split('/'))
768 if not os.path.exists(path):
769 recovery_fstab_path = 'BOOT/RAMDISK/etc/recovery.fstab'
770 return LoadRecoveryFSTab(
771 read_helper, info_dict['fstab_version'], recovery_fstab_path,
772 system_root_image)
773
774 return None
775
776
Doug Zongker37974732010-09-16 17:44:38 -0700777def DumpInfoDict(d):
778 for k, v in sorted(d.items()):
Tao Bao32fcdab2018-10-12 10:30:39 -0700779 logger.info("%-25s = (%s) %s", k, type(v).__name__, v)
Doug Zongkerc19a8d52010-07-01 15:30:11 -0700780
Dan Albert8b72aef2015-03-23 19:13:21 -0700781
Daniel Normanbfc51ef2019-07-24 14:34:54 -0700782def MergeDynamicPartitionInfoDicts(framework_dict,
783 vendor_dict,
784 include_dynamic_partition_list=True,
785 size_prefix="",
786 size_suffix="",
787 list_prefix="",
788 list_suffix=""):
789 """Merges dynamic partition info variables.
790
791 Args:
792 framework_dict: The dictionary of dynamic partition info variables from the
793 partial framework target files.
794 vendor_dict: The dictionary of dynamic partition info variables from the
795 partial vendor target files.
796 include_dynamic_partition_list: If true, merges the dynamic_partition_list
797 variable. Not all use cases need this variable merged.
798 size_prefix: The prefix in partition group size variables that precedes the
799 name of the partition group. For example, partition group 'group_a' with
800 corresponding size variable 'super_group_a_group_size' would have the
801 size_prefix 'super_'.
802 size_suffix: Similar to size_prefix but for the variable's suffix. For
803 example, 'super_group_a_group_size' would have size_suffix '_group_size'.
804 list_prefix: Similar to size_prefix but for the partition group's
805 partition_list variable.
806 list_suffix: Similar to size_suffix but for the partition group's
807 partition_list variable.
808
809 Returns:
810 The merged dynamic partition info dictionary.
811 """
812 merged_dict = {}
813 # Partition groups and group sizes are defined by the vendor dict because
814 # these values may vary for each board that uses a shared system image.
815 merged_dict["super_partition_groups"] = vendor_dict["super_partition_groups"]
816 if include_dynamic_partition_list:
817 framework_dynamic_partition_list = framework_dict.get(
818 "dynamic_partition_list", "")
819 vendor_dynamic_partition_list = vendor_dict.get("dynamic_partition_list",
820 "")
821 merged_dict["dynamic_partition_list"] = (
822 "%s %s" % (framework_dynamic_partition_list,
823 vendor_dynamic_partition_list)).strip()
824 for partition_group in merged_dict["super_partition_groups"].split(" "):
825 # Set the partition group's size using the value from the vendor dict.
826 key = "%s%s%s" % (size_prefix, partition_group, size_suffix)
827 if key not in vendor_dict:
828 raise ValueError("Vendor dict does not contain required key %s." % key)
829 merged_dict[key] = vendor_dict[key]
830
831 # Set the partition group's partition list using a concatenation of the
832 # framework and vendor partition lists.
833 key = "%s%s%s" % (list_prefix, partition_group, list_suffix)
834 merged_dict[key] = (
835 "%s %s" %
836 (framework_dict.get(key, ""), vendor_dict.get(key, ""))).strip()
837 return merged_dict
838
839
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800840def AppendAVBSigningArgs(cmd, partition):
841 """Append signing arguments for avbtool."""
842 # e.g., "--key path/to/signing_key --algorithm SHA256_RSA4096"
843 key_path = OPTIONS.info_dict.get("avb_" + partition + "_key_path")
Daniel Mentz25478182019-08-21 18:09:46 -0700844 if key_path and not os.path.exists(key_path) and OPTIONS.search_path:
845 new_key_path = os.path.join(OPTIONS.search_path, key_path)
846 if os.path.exists(new_key_path):
847 key_path = new_key_path
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800848 algorithm = OPTIONS.info_dict.get("avb_" + partition + "_algorithm")
849 if key_path and algorithm:
850 cmd.extend(["--key", key_path, "--algorithm", algorithm])
Tao Bao2b6dfd62017-09-27 17:17:43 -0700851 avb_salt = OPTIONS.info_dict.get("avb_salt")
852 # make_vbmeta_image doesn't like "--salt" (and it's not needed).
Tao Bao744c4c72018-08-20 21:09:07 -0700853 if avb_salt and not partition.startswith("vbmeta"):
Tao Bao2b6dfd62017-09-27 17:17:43 -0700854 cmd.extend(["--salt", avb_salt])
Bowgo Tsai3e599ea2017-05-26 18:30:04 +0800855
856
Tao Bao765668f2019-10-04 22:03:00 -0700857def GetAvbPartitionArg(partition, image, info_dict=None):
Daniel Norman276f0622019-07-26 14:13:51 -0700858 """Returns the VBMeta arguments for partition.
859
860 It sets up the VBMeta argument by including the partition descriptor from the
861 given 'image', or by configuring the partition as a chained partition.
862
863 Args:
864 partition: The name of the partition (e.g. "system").
865 image: The path to the partition image.
866 info_dict: A dict returned by common.LoadInfoDict(). Will use
867 OPTIONS.info_dict if None has been given.
868
869 Returns:
870 A list of VBMeta arguments.
871 """
872 if info_dict is None:
873 info_dict = OPTIONS.info_dict
874
875 # Check if chain partition is used.
876 key_path = info_dict.get("avb_" + partition + "_key_path")
cfig1aeef722019-09-20 22:45:06 +0800877 if not key_path:
878 return ["--include_descriptors_from_image", image]
879
880 # For a non-A/B device, we don't chain /recovery nor include its descriptor
881 # into vbmeta.img. The recovery image will be configured on an independent
882 # boot chain, to be verified with AVB_SLOT_VERIFY_FLAGS_NO_VBMETA_PARTITION.
883 # See details at
884 # https://android.googlesource.com/platform/external/avb/+/master/README.md#booting-into-recovery.
885 if OPTIONS.info_dict.get("ab_update") != "true" and partition == "recovery":
886 return []
887
888 # Otherwise chain the partition into vbmeta.
889 chained_partition_arg = GetAvbChainedPartitionArg(partition, info_dict)
890 return ["--chain_partition", chained_partition_arg]
Daniel Norman276f0622019-07-26 14:13:51 -0700891
892
Tao Bao02a08592018-07-22 12:40:45 -0700893def GetAvbChainedPartitionArg(partition, info_dict, key=None):
894 """Constructs and returns the arg to build or verify a chained partition.
895
896 Args:
897 partition: The partition name.
898 info_dict: The info dict to look up the key info and rollback index
899 location.
900 key: The key to be used for building or verifying the partition. Defaults to
901 the key listed in info_dict.
902
903 Returns:
904 A string of form "partition:rollback_index_location:key" that can be used to
905 build or verify vbmeta image.
Tao Bao02a08592018-07-22 12:40:45 -0700906 """
907 if key is None:
908 key = info_dict["avb_" + partition + "_key_path"]
Daniel Mentz25478182019-08-21 18:09:46 -0700909 if key and not os.path.exists(key) and OPTIONS.search_path:
910 new_key_path = os.path.join(OPTIONS.search_path, key)
911 if os.path.exists(new_key_path):
912 key = new_key_path
Tao Bao1ac886e2019-06-26 11:58:22 -0700913 pubkey_path = ExtractAvbPublicKey(info_dict["avb_avbtool"], key)
Tao Bao02a08592018-07-22 12:40:45 -0700914 rollback_index_location = info_dict[
915 "avb_" + partition + "_rollback_index_location"]
916 return "{}:{}:{}".format(partition, rollback_index_location, pubkey_path)
917
918
Daniel Norman276f0622019-07-26 14:13:51 -0700919def BuildVBMeta(image_path, partitions, name, needed_partitions):
920 """Creates a VBMeta image.
921
922 It generates the requested VBMeta image. The requested image could be for
923 top-level or chained VBMeta image, which is determined based on the name.
924
925 Args:
926 image_path: The output path for the new VBMeta image.
927 partitions: A dict that's keyed by partition names with image paths as
928 values. Only valid partition names are accepted, as listed in
929 common.AVB_PARTITIONS.
930 name: Name of the VBMeta partition, e.g. 'vbmeta', 'vbmeta_system'.
931 needed_partitions: Partitions whose descriptors should be included into the
932 generated VBMeta image.
933
934 Raises:
935 AssertionError: On invalid input args.
936 """
937 avbtool = OPTIONS.info_dict["avb_avbtool"]
938 cmd = [avbtool, "make_vbmeta_image", "--output", image_path]
939 AppendAVBSigningArgs(cmd, name)
940
941 for partition, path in partitions.items():
942 if partition not in needed_partitions:
943 continue
944 assert (partition in AVB_PARTITIONS or
945 partition in AVB_VBMETA_PARTITIONS), \
946 'Unknown partition: {}'.format(partition)
947 assert os.path.exists(path), \
948 'Failed to find {} for {}'.format(path, partition)
949 cmd.extend(GetAvbPartitionArg(partition, path))
950
951 args = OPTIONS.info_dict.get("avb_{}_args".format(name))
952 if args and args.strip():
953 split_args = shlex.split(args)
954 for index, arg in enumerate(split_args[:-1]):
955 # Sanity check that the image file exists. Some images might be defined
956 # as a path relative to source tree, which may not be available at the
957 # same location when running this script (we have the input target_files
958 # zip only). For such cases, we additionally scan other locations (e.g.
959 # IMAGES/, RADIO/, etc) before bailing out.
960 if arg == '--include_descriptors_from_image':
961 image_path = split_args[index + 1]
962 if os.path.exists(image_path):
963 continue
964 found = False
965 for dir_name in ['IMAGES', 'RADIO', 'PREBUILT_IMAGES']:
966 alt_path = os.path.join(
967 OPTIONS.input_tmp, dir_name, os.path.basename(image_path))
968 if os.path.exists(alt_path):
969 split_args[index + 1] = alt_path
970 found = True
971 break
972 assert found, 'Failed to find {}'.format(image_path)
973 cmd.extend(split_args)
974
975 RunAndCheckOutput(cmd)
976
977
Steve Mucklee1b10862019-07-10 10:49:37 -0700978def _MakeRamdisk(sourcedir, fs_config_file=None):
979 ramdisk_img = tempfile.NamedTemporaryFile()
980
981 if fs_config_file is not None and os.access(fs_config_file, os.F_OK):
982 cmd = ["mkbootfs", "-f", fs_config_file,
983 os.path.join(sourcedir, "RAMDISK")]
984 else:
985 cmd = ["mkbootfs", os.path.join(sourcedir, "RAMDISK")]
986 p1 = Run(cmd, stdout=subprocess.PIPE)
987 p2 = Run(["minigzip"], stdin=p1.stdout, stdout=ramdisk_img.file.fileno())
988
989 p2.wait()
990 p1.wait()
991 assert p1.returncode == 0, "mkbootfs of %s ramdisk failed" % (sourcedir,)
992 assert p2.returncode == 0, "minigzip of %s ramdisk failed" % (sourcedir,)
993
994 return ramdisk_img
995
996
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700997def _BuildBootableImage(sourcedir, fs_config_file, info_dict=None,
Tao Baod42e97e2016-11-30 12:11:57 -0800998 has_ramdisk=False, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -0700999 """Build a bootable image from the specified sourcedir.
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001000
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001001 Take a kernel, cmdline, and optionally a ramdisk directory from the input (in
Tao Baod42e97e2016-11-30 12:11:57 -08001002 'sourcedir'), and turn them into a boot image. 'two_step_image' indicates if
1003 we are building a two-step special image (i.e. building a recovery image to
1004 be loaded into /boot in two-step OTAs).
1005
1006 Return the image data, or None if sourcedir does not appear to contains files
1007 for building the requested image.
1008 """
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001009
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001010 if not os.access(os.path.join(sourcedir, "kernel"), os.F_OK):
1011 return None
1012
1013 if has_ramdisk and not os.access(os.path.join(sourcedir, "RAMDISK"), os.F_OK):
Doug Zongkere1c31ba2009-06-23 17:40:35 -07001014 return None
Doug Zongkereef39442009-04-02 12:14:19 -07001015
Doug Zongkerd5131602012-08-02 14:46:42 -07001016 if info_dict is None:
1017 info_dict = OPTIONS.info_dict
1018
Doug Zongkereef39442009-04-02 12:14:19 -07001019 img = tempfile.NamedTemporaryFile()
1020
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001021 if has_ramdisk:
Steve Mucklee1b10862019-07-10 10:49:37 -07001022 ramdisk_img = _MakeRamdisk(sourcedir, fs_config_file)
Doug Zongkereef39442009-04-02 12:14:19 -07001023
Bjorn Andersson612e2cd2012-11-25 16:53:44 -08001024 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1025 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1026
1027 cmd = [mkbootimg, "--kernel", os.path.join(sourcedir, "kernel")]
Doug Zongker38a649f2009-06-17 09:07:09 -07001028
Benoit Fradina45a8682014-07-14 21:00:43 +02001029 fn = os.path.join(sourcedir, "second")
1030 if os.access(fn, os.F_OK):
1031 cmd.append("--second")
1032 cmd.append(fn)
1033
Hridya Valsaraju9683b2f2019-01-22 18:08:59 -08001034 fn = os.path.join(sourcedir, "dtb")
1035 if os.access(fn, os.F_OK):
1036 cmd.append("--dtb")
1037 cmd.append(fn)
1038
Doug Zongker171f1cd2009-06-15 22:36:37 -07001039 fn = os.path.join(sourcedir, "cmdline")
1040 if os.access(fn, os.F_OK):
Doug Zongker38a649f2009-06-17 09:07:09 -07001041 cmd.append("--cmdline")
1042 cmd.append(open(fn).read().rstrip("\n"))
1043
1044 fn = os.path.join(sourcedir, "base")
1045 if os.access(fn, os.F_OK):
1046 cmd.append("--base")
1047 cmd.append(open(fn).read().rstrip("\n"))
1048
Ying Wang4de6b5b2010-08-25 14:29:34 -07001049 fn = os.path.join(sourcedir, "pagesize")
1050 if os.access(fn, os.F_OK):
1051 cmd.append("--pagesize")
1052 cmd.append(open(fn).read().rstrip("\n"))
1053
Tao Bao76def242017-11-21 09:25:31 -08001054 args = info_dict.get("mkbootimg_args")
Doug Zongkerd5131602012-08-02 14:46:42 -07001055 if args and args.strip():
Jianxun Zhang09849492013-04-17 15:19:19 -07001056 cmd.extend(shlex.split(args))
Doug Zongkerd5131602012-08-02 14:46:42 -07001057
Tao Bao76def242017-11-21 09:25:31 -08001058 args = info_dict.get("mkbootimg_version_args")
Sami Tolvanen3303d902016-03-15 16:49:30 +00001059 if args and args.strip():
1060 cmd.extend(shlex.split(args))
1061
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001062 if has_ramdisk:
1063 cmd.extend(["--ramdisk", ramdisk_img.name])
1064
Tao Baod95e9fd2015-03-29 23:07:41 -07001065 img_unsigned = None
Tao Bao76def242017-11-21 09:25:31 -08001066 if info_dict.get("vboot"):
Tao Baod95e9fd2015-03-29 23:07:41 -07001067 img_unsigned = tempfile.NamedTemporaryFile()
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001068 cmd.extend(["--output", img_unsigned.name])
Tao Baod95e9fd2015-03-29 23:07:41 -07001069 else:
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001070 cmd.extend(["--output", img.name])
Doug Zongker38a649f2009-06-17 09:07:09 -07001071
Tao Baobf70c3182017-07-11 17:27:55 -07001072 # "boot" or "recovery", without extension.
1073 partition_name = os.path.basename(sourcedir).lower()
1074
Chen, ZhiminX752439b2018-09-23 22:10:47 +08001075 if partition_name == "recovery":
1076 if info_dict.get("include_recovery_dtbo") == "true":
1077 fn = os.path.join(sourcedir, "recovery_dtbo")
1078 cmd.extend(["--recovery_dtbo", fn])
1079 if info_dict.get("include_recovery_acpio") == "true":
1080 fn = os.path.join(sourcedir, "recovery_acpio")
1081 cmd.extend(["--recovery_acpio", fn])
Hridya Valsarajue74a38b2018-03-21 12:15:11 -07001082
Tao Bao986ee862018-10-04 15:46:16 -07001083 RunAndCheckOutput(cmd)
Doug Zongkereef39442009-04-02 12:14:19 -07001084
Tao Bao76def242017-11-21 09:25:31 -08001085 if (info_dict.get("boot_signer") == "true" and
1086 info_dict.get("verity_key")):
Tao Baod42e97e2016-11-30 12:11:57 -08001087 # Hard-code the path as "/boot" for two-step special recovery image (which
1088 # will be loaded into /boot during the two-step OTA).
1089 if two_step_image:
1090 path = "/boot"
1091 else:
Tao Baobf70c3182017-07-11 17:27:55 -07001092 path = "/" + partition_name
Baligh Uddin601ddea2015-06-09 15:48:14 -07001093 cmd = [OPTIONS.boot_signer_path]
1094 cmd.extend(OPTIONS.boot_signer_args)
1095 cmd.extend([path, img.name,
1096 info_dict["verity_key"] + ".pk8",
1097 info_dict["verity_key"] + ".x509.pem", img.name])
Tao Bao986ee862018-10-04 15:46:16 -07001098 RunAndCheckOutput(cmd)
Geremy Condra95ebe7a2014-08-19 17:27:56 -07001099
Tao Baod95e9fd2015-03-29 23:07:41 -07001100 # Sign the image if vboot is non-empty.
Tao Bao76def242017-11-21 09:25:31 -08001101 elif info_dict.get("vboot"):
Tao Baobf70c3182017-07-11 17:27:55 -07001102 path = "/" + partition_name
Tao Baod95e9fd2015-03-29 23:07:41 -07001103 img_keyblock = tempfile.NamedTemporaryFile()
Tao Bao4f104d12017-02-17 23:21:31 -08001104 # We have switched from the prebuilt futility binary to using the tool
1105 # (futility-host) built from the source. Override the setting in the old
1106 # TF.zip.
1107 futility = info_dict["futility"]
1108 if futility.startswith("prebuilts/"):
1109 futility = "futility-host"
1110 cmd = [info_dict["vboot_signer_cmd"], futility,
Tao Baod95e9fd2015-03-29 23:07:41 -07001111 img_unsigned.name, info_dict["vboot_key"] + ".vbpubk",
Furquan Shaikh852b8de2015-08-10 11:43:45 -07001112 info_dict["vboot_key"] + ".vbprivk",
1113 info_dict["vboot_subkey"] + ".vbprivk",
1114 img_keyblock.name,
Tao Baod95e9fd2015-03-29 23:07:41 -07001115 img.name]
Tao Bao986ee862018-10-04 15:46:16 -07001116 RunAndCheckOutput(cmd)
Tao Baod95e9fd2015-03-29 23:07:41 -07001117
Tao Baof3282b42015-04-01 11:21:55 -07001118 # Clean up the temp files.
1119 img_unsigned.close()
1120 img_keyblock.close()
1121
David Zeuthen8fecb282017-12-01 16:24:01 -05001122 # AVB: if enabled, calculate and add hash to boot.img or recovery.img.
Bowgo Tsai3e599ea2017-05-26 18:30:04 +08001123 if info_dict.get("avb_enable") == "true":
Tao Baof88e0ce2019-03-18 14:01:38 -07001124 avbtool = info_dict["avb_avbtool"]
David Zeuthen8fecb282017-12-01 16:24:01 -05001125 part_size = info_dict[partition_name + "_size"]
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001126 cmd = [avbtool, "add_hash_footer", "--image", img.name,
Tao Baobf70c3182017-07-11 17:27:55 -07001127 "--partition_size", str(part_size), "--partition_name",
1128 partition_name]
1129 AppendAVBSigningArgs(cmd, partition_name)
David Zeuthen8fecb282017-12-01 16:24:01 -05001130 args = info_dict.get("avb_" + partition_name + "_add_hash_footer_args")
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001131 if args and args.strip():
1132 cmd.extend(shlex.split(args))
Tao Bao986ee862018-10-04 15:46:16 -07001133 RunAndCheckOutput(cmd)
David Zeuthend995f4b2016-01-29 16:59:17 -05001134
1135 img.seek(os.SEEK_SET, 0)
1136 data = img.read()
1137
1138 if has_ramdisk:
1139 ramdisk_img.close()
1140 img.close()
1141
1142 return data
1143
1144
Doug Zongkerd5131602012-08-02 14:46:42 -07001145def GetBootableImage(name, prebuilt_name, unpack_dir, tree_subdir,
Tao Baod42e97e2016-11-30 12:11:57 -08001146 info_dict=None, two_step_image=False):
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001147 """Return a File object with the desired bootable image.
1148
1149 Look for it in 'unpack_dir'/BOOTABLE_IMAGES under the name 'prebuilt_name',
1150 otherwise look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1151 the source files in 'unpack_dir'/'tree_subdir'."""
Doug Zongkereef39442009-04-02 12:14:19 -07001152
Doug Zongker55d93282011-01-25 17:03:34 -08001153 prebuilt_path = os.path.join(unpack_dir, "BOOTABLE_IMAGES", prebuilt_name)
1154 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001155 logger.info("using prebuilt %s from BOOTABLE_IMAGES...", prebuilt_name)
Doug Zongker55d93282011-01-25 17:03:34 -08001156 return File.FromLocalFile(name, prebuilt_path)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001157
1158 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1159 if os.path.exists(prebuilt_path):
Tao Bao32fcdab2018-10-12 10:30:39 -07001160 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001161 return File.FromLocalFile(name, prebuilt_path)
1162
Tao Bao32fcdab2018-10-12 10:30:39 -07001163 logger.info("building image from target_files %s...", tree_subdir)
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001164
1165 if info_dict is None:
1166 info_dict = OPTIONS.info_dict
1167
1168 # With system_root_image == "true", we don't pack ramdisk into the boot image.
Daniel Rosenberg40ef35b2015-11-10 19:21:34 -08001169 # Unless "recovery_as_boot" is specified, in which case we carry the ramdisk
1170 # for recovery.
1171 has_ramdisk = (info_dict.get("system_root_image") != "true" or
1172 prebuilt_name != "boot.img" or
1173 info_dict.get("recovery_as_boot") == "true")
Tao Bao7a5bf8a2015-07-21 18:01:20 -07001174
Doug Zongker6f1d0312014-08-22 08:07:12 -07001175 fs_config = "META/" + tree_subdir.lower() + "_filesystem_config.txt"
David Zeuthen2ce63ed2016-09-15 13:43:54 -04001176 data = _BuildBootableImage(os.path.join(unpack_dir, tree_subdir),
1177 os.path.join(unpack_dir, fs_config),
Tao Baod42e97e2016-11-30 12:11:57 -08001178 info_dict, has_ramdisk, two_step_image)
Doug Zongker6f1d0312014-08-22 08:07:12 -07001179 if data:
1180 return File(name, data)
1181 return None
Doug Zongker55d93282011-01-25 17:03:34 -08001182
Doug Zongkereef39442009-04-02 12:14:19 -07001183
Steve Mucklee1b10862019-07-10 10:49:37 -07001184def _BuildVendorBootImage(sourcedir, info_dict=None):
1185 """Build a vendor boot image from the specified sourcedir.
1186
1187 Take a ramdisk, dtb, and vendor_cmdline from the input (in 'sourcedir'), and
1188 turn them into a vendor boot image.
1189
1190 Return the image data, or None if sourcedir does not appear to contains files
1191 for building the requested image.
1192 """
1193
1194 if info_dict is None:
1195 info_dict = OPTIONS.info_dict
1196
1197 img = tempfile.NamedTemporaryFile()
1198
1199 ramdisk_img = _MakeRamdisk(sourcedir)
1200
1201 # use MKBOOTIMG from environ, or "mkbootimg" if empty or not set
1202 mkbootimg = os.getenv('MKBOOTIMG') or "mkbootimg"
1203
1204 cmd = [mkbootimg]
1205
1206 fn = os.path.join(sourcedir, "dtb")
1207 if os.access(fn, os.F_OK):
1208 cmd.append("--dtb")
1209 cmd.append(fn)
1210
1211 fn = os.path.join(sourcedir, "vendor_cmdline")
1212 if os.access(fn, os.F_OK):
1213 cmd.append("--vendor_cmdline")
1214 cmd.append(open(fn).read().rstrip("\n"))
1215
1216 fn = os.path.join(sourcedir, "base")
1217 if os.access(fn, os.F_OK):
1218 cmd.append("--base")
1219 cmd.append(open(fn).read().rstrip("\n"))
1220
1221 fn = os.path.join(sourcedir, "pagesize")
1222 if os.access(fn, os.F_OK):
1223 cmd.append("--pagesize")
1224 cmd.append(open(fn).read().rstrip("\n"))
1225
1226 args = info_dict.get("mkbootimg_args")
1227 if args and args.strip():
1228 cmd.extend(shlex.split(args))
1229
1230 args = info_dict.get("mkbootimg_version_args")
1231 if args and args.strip():
1232 cmd.extend(shlex.split(args))
1233
1234 cmd.extend(["--vendor_ramdisk", ramdisk_img.name])
1235 cmd.extend(["--vendor_boot", img.name])
1236
1237 RunAndCheckOutput(cmd)
1238
1239 # AVB: if enabled, calculate and add hash.
1240 if info_dict.get("avb_enable") == "true":
1241 avbtool = info_dict["avb_avbtool"]
1242 part_size = info_dict["vendor_boot_size"]
1243 cmd = [avbtool, "add_hash_footer", "--image", img.name,
1244 "--partition_size", str(part_size), "--partition_name vendor_boot"]
1245 AppendAVBSigningArgs(cmd, "vendor_boot")
1246 args = info_dict.get("avb_vendor_boot_add_hash_footer_args")
1247 if args and args.strip():
1248 cmd.extend(shlex.split(args))
1249 RunAndCheckOutput(cmd)
1250
1251 img.seek(os.SEEK_SET, 0)
1252 data = img.read()
1253
1254 ramdisk_img.close()
1255 img.close()
1256
1257 return data
1258
1259
1260def GetVendorBootImage(name, prebuilt_name, unpack_dir, tree_subdir,
1261 info_dict=None):
1262 """Return a File object with the desired vendor boot image.
1263
1264 Look for it under 'unpack_dir'/IMAGES, otherwise construct it from
1265 the source files in 'unpack_dir'/'tree_subdir'."""
1266
1267 prebuilt_path = os.path.join(unpack_dir, "IMAGES", prebuilt_name)
1268 if os.path.exists(prebuilt_path):
1269 logger.info("using prebuilt %s from IMAGES...", prebuilt_name)
1270 return File.FromLocalFile(name, prebuilt_path)
1271
1272 logger.info("building image from target_files %s...", tree_subdir)
1273
1274 if info_dict is None:
1275 info_dict = OPTIONS.info_dict
1276
1277 data = _BuildVendorBootImage(os.path.join(unpack_dir, tree_subdir), info_dict)
1278 if data:
1279 return File(name, data)
1280 return None
1281
1282
Narayan Kamatha07bf042017-08-14 14:49:21 +01001283def Gunzip(in_filename, out_filename):
Tao Bao76def242017-11-21 09:25:31 -08001284 """Gunzips the given gzip compressed file to a given output file."""
1285 with gzip.open(in_filename, "rb") as in_file, \
1286 open(out_filename, "wb") as out_file:
Narayan Kamatha07bf042017-08-14 14:49:21 +01001287 shutil.copyfileobj(in_file, out_file)
1288
1289
Tao Bao0ff15de2019-03-20 11:26:06 -07001290def UnzipToDir(filename, dirname, patterns=None):
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001291 """Unzips the archive to the given directory.
1292
1293 Args:
1294 filename: The name of the zip file to unzip.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001295 dirname: Where the unziped files will land.
Tao Bao0ff15de2019-03-20 11:26:06 -07001296 patterns: Files to unzip from the archive. If omitted, will unzip the entire
1297 archvie. Non-matching patterns will be filtered out. If there's no match
1298 after the filtering, no file will be unzipped.
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001299 """
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001300 cmd = ["unzip", "-o", "-q", filename, "-d", dirname]
Tao Bao0ff15de2019-03-20 11:26:06 -07001301 if patterns is not None:
1302 # Filter out non-matching patterns. unzip will complain otherwise.
1303 with zipfile.ZipFile(filename) as input_zip:
1304 names = input_zip.namelist()
1305 filtered = [
1306 pattern for pattern in patterns if fnmatch.filter(names, pattern)]
1307
1308 # There isn't any matching files. Don't unzip anything.
1309 if not filtered:
1310 return
1311 cmd.extend(filtered)
1312
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001313 RunAndCheckOutput(cmd)
1314
1315
Doug Zongker75f17362009-12-08 13:46:44 -08001316def UnzipTemp(filename, pattern=None):
Tao Bao1c830bf2017-12-25 10:43:47 -08001317 """Unzips the given archive into a temporary directory and returns the name.
Doug Zongker55d93282011-01-25 17:03:34 -08001318
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001319 Args:
1320 filename: If filename is of the form "foo.zip+bar.zip", unzip foo.zip into
1321 a temp dir, then unzip bar.zip into that_dir/BOOTABLE_IMAGES.
1322
1323 pattern: Files to unzip from the archive. If omitted, will unzip the entire
1324 archvie.
Doug Zongker55d93282011-01-25 17:03:34 -08001325
Tao Bao1c830bf2017-12-25 10:43:47 -08001326 Returns:
Tao Baodba59ee2018-01-09 13:21:02 -08001327 The name of the temporary directory.
Doug Zongker55d93282011-01-25 17:03:34 -08001328 """
Doug Zongkereef39442009-04-02 12:14:19 -07001329
Tao Bao1c830bf2017-12-25 10:43:47 -08001330 tmp = MakeTempDir(prefix="targetfiles-")
Doug Zongker55d93282011-01-25 17:03:34 -08001331 m = re.match(r"^(.*[.]zip)\+(.*[.]zip)$", filename, re.IGNORECASE)
1332 if m:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001333 UnzipToDir(m.group(1), tmp, pattern)
1334 UnzipToDir(m.group(2), os.path.join(tmp, "BOOTABLE_IMAGES"), pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001335 filename = m.group(1)
1336 else:
Bill Peckham8ff3fbd2019-02-22 10:57:43 -08001337 UnzipToDir(filename, tmp, pattern)
Doug Zongker55d93282011-01-25 17:03:34 -08001338
Tao Baodba59ee2018-01-09 13:21:02 -08001339 return tmp
Doug Zongkereef39442009-04-02 12:14:19 -07001340
1341
Yifan Hong8a66a712019-04-04 15:37:57 -07001342def GetUserImage(which, tmpdir, input_zip,
1343 info_dict=None,
1344 allow_shared_blocks=None,
1345 hashtree_info_generator=None,
1346 reset_file_map=False):
1347 """Returns an Image object suitable for passing to BlockImageDiff.
1348
1349 This function loads the specified image from the given path. If the specified
1350 image is sparse, it also performs additional processing for OTA purpose. For
1351 example, it always adds block 0 to clobbered blocks list. It also detects
1352 files that cannot be reconstructed from the block list, for whom we should
1353 avoid applying imgdiff.
1354
1355 Args:
1356 which: The partition name.
1357 tmpdir: The directory that contains the prebuilt image and block map file.
1358 input_zip: The target-files ZIP archive.
1359 info_dict: The dict to be looked up for relevant info.
1360 allow_shared_blocks: If image is sparse, whether having shared blocks is
1361 allowed. If none, it is looked up from info_dict.
1362 hashtree_info_generator: If present and image is sparse, generates the
1363 hashtree_info for this sparse image.
1364 reset_file_map: If true and image is sparse, reset file map before returning
1365 the image.
1366 Returns:
1367 A Image object. If it is a sparse image and reset_file_map is False, the
1368 image will have file_map info loaded.
1369 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07001370 if info_dict is None:
Yifan Hong8a66a712019-04-04 15:37:57 -07001371 info_dict = LoadInfoDict(input_zip)
1372
1373 is_sparse = info_dict.get("extfs_sparse_flag")
1374
1375 # When target uses 'BOARD_EXT4_SHARE_DUP_BLOCKS := true', images may contain
1376 # shared blocks (i.e. some blocks will show up in multiple files' block
1377 # list). We can only allocate such shared blocks to the first "owner", and
1378 # disable imgdiff for all later occurrences.
1379 if allow_shared_blocks is None:
1380 allow_shared_blocks = info_dict.get("ext4_share_dup_blocks") == "true"
1381
1382 if is_sparse:
1383 img = GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1384 hashtree_info_generator)
1385 if reset_file_map:
1386 img.ResetFileMap()
1387 return img
1388 else:
1389 return GetNonSparseImage(which, tmpdir, hashtree_info_generator)
1390
1391
1392def GetNonSparseImage(which, tmpdir, hashtree_info_generator=None):
1393 """Returns a Image object suitable for passing to BlockImageDiff.
1394
1395 This function loads the specified non-sparse image from the given path.
1396
1397 Args:
1398 which: The partition name.
1399 tmpdir: The directory that contains the prebuilt image and block map file.
1400 Returns:
1401 A Image object.
1402 """
1403 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1404 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1405
1406 # The image and map files must have been created prior to calling
1407 # ota_from_target_files.py (since LMP).
1408 assert os.path.exists(path) and os.path.exists(mappath)
1409
Tianjie Xu41976c72019-07-03 13:57:01 -07001410 return images.FileImage(path, hashtree_info_generator=hashtree_info_generator)
1411
Yifan Hong8a66a712019-04-04 15:37:57 -07001412
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001413def GetSparseImage(which, tmpdir, input_zip, allow_shared_blocks,
1414 hashtree_info_generator=None):
Tao Baoc765cca2018-01-31 17:32:40 -08001415 """Returns a SparseImage object suitable for passing to BlockImageDiff.
1416
1417 This function loads the specified sparse image from the given path, and
1418 performs additional processing for OTA purpose. For example, it always adds
1419 block 0 to clobbered blocks list. It also detects files that cannot be
1420 reconstructed from the block list, for whom we should avoid applying imgdiff.
1421
1422 Args:
Tao Baob2de7d92019-04-10 10:01:47 -07001423 which: The partition name, e.g. "system", "vendor".
Tao Baoc765cca2018-01-31 17:32:40 -08001424 tmpdir: The directory that contains the prebuilt image and block map file.
1425 input_zip: The target-files ZIP archive.
Tao Baoe709b092018-02-07 12:40:00 -08001426 allow_shared_blocks: Whether having shared blocks is allowed.
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001427 hashtree_info_generator: If present, generates the hashtree_info for this
1428 sparse image.
Tao Baoc765cca2018-01-31 17:32:40 -08001429 Returns:
1430 A SparseImage object, with file_map info loaded.
1431 """
Tao Baoc765cca2018-01-31 17:32:40 -08001432 path = os.path.join(tmpdir, "IMAGES", which + ".img")
1433 mappath = os.path.join(tmpdir, "IMAGES", which + ".map")
1434
1435 # The image and map files must have been created prior to calling
1436 # ota_from_target_files.py (since LMP).
1437 assert os.path.exists(path) and os.path.exists(mappath)
1438
1439 # In ext4 filesystems, block 0 might be changed even being mounted R/O. We add
1440 # it to clobbered_blocks so that it will be written to the target
1441 # unconditionally. Note that they are still part of care_map. (Bug: 20939131)
1442 clobbered_blocks = "0"
1443
Tianjie Xu67c7cbb2018-08-30 00:32:07 -07001444 image = sparse_img.SparseImage(
1445 path, mappath, clobbered_blocks, allow_shared_blocks=allow_shared_blocks,
1446 hashtree_info_generator=hashtree_info_generator)
Tao Baoc765cca2018-01-31 17:32:40 -08001447
1448 # block.map may contain less blocks, because mke2fs may skip allocating blocks
1449 # if they contain all zeros. We can't reconstruct such a file from its block
1450 # list. Tag such entries accordingly. (Bug: 65213616)
1451 for entry in image.file_map:
Tao Baoc765cca2018-01-31 17:32:40 -08001452 # Skip artificial names, such as "__ZERO", "__NONZERO-1".
Tao Baod3554e62018-07-10 15:31:22 -07001453 if not entry.startswith('/'):
Tao Baoc765cca2018-01-31 17:32:40 -08001454 continue
1455
Tom Cherryd14b8952018-08-09 14:26:00 -07001456 # "/system/framework/am.jar" => "SYSTEM/framework/am.jar". Note that the
1457 # filename listed in system.map may contain an additional leading slash
1458 # (i.e. "//system/framework/am.jar"). Using lstrip to get consistent
1459 # results.
Tao Baoda30cfa2017-12-01 16:19:46 -08001460 arcname = entry.replace(which, which.upper(), 1).lstrip('/')
Tao Baod3554e62018-07-10 15:31:22 -07001461
Tom Cherryd14b8952018-08-09 14:26:00 -07001462 # Special handling another case, where files not under /system
1463 # (e.g. "/sbin/charger") are packed under ROOT/ in a target_files.zip.
Tao Baod3554e62018-07-10 15:31:22 -07001464 if which == 'system' and not arcname.startswith('SYSTEM'):
1465 arcname = 'ROOT/' + arcname
1466
1467 assert arcname in input_zip.namelist(), \
1468 "Failed to find the ZIP entry for {}".format(entry)
1469
Tao Baoc765cca2018-01-31 17:32:40 -08001470 info = input_zip.getinfo(arcname)
1471 ranges = image.file_map[entry]
Tao Baoe709b092018-02-07 12:40:00 -08001472
1473 # If a RangeSet has been tagged as using shared blocks while loading the
Tao Bao2a20f342018-12-03 15:08:23 -08001474 # image, check the original block list to determine its completeness. Note
1475 # that the 'incomplete' flag would be tagged to the original RangeSet only.
Tao Baoe709b092018-02-07 12:40:00 -08001476 if ranges.extra.get('uses_shared_blocks'):
Tao Bao2a20f342018-12-03 15:08:23 -08001477 ranges = ranges.extra['uses_shared_blocks']
Tao Baoe709b092018-02-07 12:40:00 -08001478
Tao Baoc765cca2018-01-31 17:32:40 -08001479 if RoundUpTo4K(info.file_size) > ranges.size() * 4096:
1480 ranges.extra['incomplete'] = True
1481
1482 return image
1483
1484
Doug Zongkereef39442009-04-02 12:14:19 -07001485def GetKeyPasswords(keylist):
1486 """Given a list of keys, prompt the user to enter passwords for
1487 those which require them. Return a {key: password} dict. password
1488 will be None if the key has no password."""
1489
Doug Zongker8ce7c252009-05-22 13:34:54 -07001490 no_passwords = []
1491 need_passwords = []
T.R. Fullhart37e10522013-03-18 10:31:26 -07001492 key_passwords = {}
Doug Zongkereef39442009-04-02 12:14:19 -07001493 devnull = open("/dev/null", "w+b")
1494 for k in sorted(keylist):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001495 # We don't need a password for things that aren't really keys.
1496 if k in SPECIAL_CERT_STRINGS:
Doug Zongker8ce7c252009-05-22 13:34:54 -07001497 no_passwords.append(k)
Doug Zongker43874f82009-04-14 14:05:15 -07001498 continue
1499
T.R. Fullhart37e10522013-03-18 10:31:26 -07001500 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
Doug Zongker602a84e2009-06-18 08:35:12 -07001501 "-inform", "DER", "-nocrypt"],
1502 stdin=devnull.fileno(),
1503 stdout=devnull.fileno(),
1504 stderr=subprocess.STDOUT)
Doug Zongkereef39442009-04-02 12:14:19 -07001505 p.communicate()
1506 if p.returncode == 0:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001507 # Definitely an unencrypted key.
Doug Zongker8ce7c252009-05-22 13:34:54 -07001508 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001509 else:
T.R. Fullhart37e10522013-03-18 10:31:26 -07001510 p = Run(["openssl", "pkcs8", "-in", k+OPTIONS.private_key_suffix,
1511 "-inform", "DER", "-passin", "pass:"],
1512 stdin=devnull.fileno(),
1513 stdout=devnull.fileno(),
1514 stderr=subprocess.PIPE)
Dan Albert8b72aef2015-03-23 19:13:21 -07001515 _, stderr = p.communicate()
T.R. Fullhart37e10522013-03-18 10:31:26 -07001516 if p.returncode == 0:
1517 # Encrypted key with empty string as password.
1518 key_passwords[k] = ''
1519 elif stderr.startswith('Error decrypting key'):
1520 # Definitely encrypted key.
1521 # It would have said "Error reading key" if it didn't parse correctly.
1522 need_passwords.append(k)
1523 else:
1524 # Potentially, a type of key that openssl doesn't understand.
1525 # We'll let the routines in signapk.jar handle it.
1526 no_passwords.append(k)
Doug Zongkereef39442009-04-02 12:14:19 -07001527 devnull.close()
Doug Zongker8ce7c252009-05-22 13:34:54 -07001528
T.R. Fullhart37e10522013-03-18 10:31:26 -07001529 key_passwords.update(PasswordManager().GetPasswords(need_passwords))
Tao Bao76def242017-11-21 09:25:31 -08001530 key_passwords.update(dict.fromkeys(no_passwords))
Doug Zongkereef39442009-04-02 12:14:19 -07001531 return key_passwords
1532
1533
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001534def GetMinSdkVersion(apk_name):
Tao Baof47bf0f2018-03-21 23:28:51 -07001535 """Gets the minSdkVersion declared in the APK.
1536
changho.shin0f125362019-07-08 10:59:00 +09001537 It calls 'aapt2' to query the embedded minSdkVersion from the given APK file.
Tao Baof47bf0f2018-03-21 23:28:51 -07001538 This can be both a decimal number (API Level) or a codename.
1539
1540 Args:
1541 apk_name: The APK filename.
1542
1543 Returns:
1544 The parsed SDK version string.
1545
1546 Raises:
1547 ExternalError: On failing to obtain the min SDK version.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001548 """
Tao Baof47bf0f2018-03-21 23:28:51 -07001549 proc = Run(
changho.shin0f125362019-07-08 10:59:00 +09001550 ["aapt2", "dump", "badging", apk_name], stdout=subprocess.PIPE,
Tao Baof47bf0f2018-03-21 23:28:51 -07001551 stderr=subprocess.PIPE)
1552 stdoutdata, stderrdata = proc.communicate()
1553 if proc.returncode != 0:
1554 raise ExternalError(
changho.shin0f125362019-07-08 10:59:00 +09001555 "Failed to obtain minSdkVersion: aapt2 return code {}:\n{}\n{}".format(
Tao Baof47bf0f2018-03-21 23:28:51 -07001556 proc.returncode, stdoutdata, stderrdata))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001557
Tao Baof47bf0f2018-03-21 23:28:51 -07001558 for line in stdoutdata.split("\n"):
1559 # Looking for lines such as sdkVersion:'23' or sdkVersion:'M'.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001560 m = re.match(r'sdkVersion:\'([^\']*)\'', line)
1561 if m:
1562 return m.group(1)
changho.shin0f125362019-07-08 10:59:00 +09001563 raise ExternalError("No minSdkVersion returned by aapt2")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001564
1565
1566def GetMinSdkVersionInt(apk_name, codename_to_api_level_map):
Tao Baof47bf0f2018-03-21 23:28:51 -07001567 """Returns the minSdkVersion declared in the APK as a number (API Level).
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001568
Tao Baof47bf0f2018-03-21 23:28:51 -07001569 If minSdkVersion is set to a codename, it is translated to a number using the
1570 provided map.
1571
1572 Args:
1573 apk_name: The APK filename.
1574
1575 Returns:
1576 The parsed SDK version number.
1577
1578 Raises:
1579 ExternalError: On failing to get the min SDK version number.
1580 """
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001581 version = GetMinSdkVersion(apk_name)
1582 try:
1583 return int(version)
1584 except ValueError:
1585 # Not a decimal number. Codename?
1586 if version in codename_to_api_level_map:
1587 return codename_to_api_level_map[version]
1588 else:
Tao Baof47bf0f2018-03-21 23:28:51 -07001589 raise ExternalError(
1590 "Unknown minSdkVersion: '{}'. Known codenames: {}".format(
1591 version, codename_to_api_level_map))
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001592
1593
1594def SignFile(input_name, output_name, key, password, min_api_level=None,
Tao Baoffc9a302019-03-22 23:16:58 -07001595 codename_to_api_level_map=None, whole_file=False,
1596 extra_signapk_args=None):
Doug Zongkereef39442009-04-02 12:14:19 -07001597 """Sign the input_name zip/jar/apk, producing output_name. Use the
1598 given key and password (the latter may be None if the key does not
1599 have a password.
1600
Doug Zongker951495f2009-08-14 12:44:19 -07001601 If whole_file is true, use the "-w" option to SignApk to embed a
1602 signature that covers the whole file in the archive comment of the
1603 zip file.
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001604
1605 min_api_level is the API Level (int) of the oldest platform this file may end
1606 up on. If not specified for an APK, the API Level is obtained by interpreting
1607 the minSdkVersion attribute of the APK's AndroidManifest.xml.
1608
1609 codename_to_api_level_map is needed to translate the codename which may be
1610 encountered as the APK's minSdkVersion.
Tao Baoffc9a302019-03-22 23:16:58 -07001611
1612 Caller may optionally specify extra args to be passed to SignApk, which
1613 defaults to OPTIONS.extra_signapk_args if omitted.
Doug Zongkereef39442009-04-02 12:14:19 -07001614 """
Tao Bao76def242017-11-21 09:25:31 -08001615 if codename_to_api_level_map is None:
1616 codename_to_api_level_map = {}
Tao Baoffc9a302019-03-22 23:16:58 -07001617 if extra_signapk_args is None:
1618 extra_signapk_args = OPTIONS.extra_signapk_args
Doug Zongker951495f2009-08-14 12:44:19 -07001619
Alex Klyubin9667b182015-12-10 13:38:50 -08001620 java_library_path = os.path.join(
1621 OPTIONS.search_path, OPTIONS.signapk_shared_library_path)
1622
Tao Baoe95540e2016-11-08 12:08:53 -08001623 cmd = ([OPTIONS.java_path] + OPTIONS.java_args +
1624 ["-Djava.library.path=" + java_library_path,
1625 "-jar", os.path.join(OPTIONS.search_path, OPTIONS.signapk_path)] +
Tao Baoffc9a302019-03-22 23:16:58 -07001626 extra_signapk_args)
Doug Zongker951495f2009-08-14 12:44:19 -07001627 if whole_file:
1628 cmd.append("-w")
Alex Klyubin2cfd1d12016-01-13 10:32:47 -08001629
1630 min_sdk_version = min_api_level
1631 if min_sdk_version is None:
1632 if not whole_file:
1633 min_sdk_version = GetMinSdkVersionInt(
1634 input_name, codename_to_api_level_map)
1635 if min_sdk_version is not None:
1636 cmd.extend(["--min-sdk-version", str(min_sdk_version)])
1637
T.R. Fullhart37e10522013-03-18 10:31:26 -07001638 cmd.extend([key + OPTIONS.public_key_suffix,
1639 key + OPTIONS.private_key_suffix,
Alex Klyubineb756d72015-12-04 09:21:08 -08001640 input_name, output_name])
Doug Zongker951495f2009-08-14 12:44:19 -07001641
Tao Bao73dd4f42018-10-04 16:25:33 -07001642 proc = Run(cmd, stdin=subprocess.PIPE)
Doug Zongkereef39442009-04-02 12:14:19 -07001643 if password is not None:
1644 password += "\n"
Tao Bao73dd4f42018-10-04 16:25:33 -07001645 stdoutdata, _ = proc.communicate(password)
1646 if proc.returncode != 0:
Tao Bao80921982018-03-21 21:02:19 -07001647 raise ExternalError(
1648 "Failed to run signapk.jar: return code {}:\n{}".format(
Tao Bao73dd4f42018-10-04 16:25:33 -07001649 proc.returncode, stdoutdata))
Doug Zongkereef39442009-04-02 12:14:19 -07001650
Doug Zongkereef39442009-04-02 12:14:19 -07001651
Doug Zongker37974732010-09-16 17:44:38 -07001652def CheckSize(data, target, info_dict):
Tao Bao9dd909e2017-11-14 11:27:32 -08001653 """Checks the data string passed against the max size limit.
Doug Zongkerc77a9ad2010-09-16 11:28:43 -07001654
Tao Bao9dd909e2017-11-14 11:27:32 -08001655 For non-AVB images, raise exception if the data is too big. Print a warning
1656 if the data is nearing the maximum size.
1657
1658 For AVB images, the actual image size should be identical to the limit.
1659
1660 Args:
1661 data: A string that contains all the data for the partition.
1662 target: The partition name. The ".img" suffix is optional.
1663 info_dict: The dict to be looked up for relevant info.
1664 """
Dan Albert8b72aef2015-03-23 19:13:21 -07001665 if target.endswith(".img"):
1666 target = target[:-4]
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001667 mount_point = "/" + target
1668
Ying Wangf8824af2014-06-03 14:07:27 -07001669 fs_type = None
1670 limit = None
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001671 if info_dict["fstab"]:
Dan Albert8b72aef2015-03-23 19:13:21 -07001672 if mount_point == "/userdata":
1673 mount_point = "/data"
Doug Zongker9ce0fb62010-09-20 18:04:41 -07001674 p = info_dict["fstab"][mount_point]
1675 fs_type = p.fs_type
Andrew Boie0f9aec82012-02-14 09:32:52 -08001676 device = p.device
1677 if "/" in device:
1678 device = device[device.rfind("/")+1:]
Tao Bao76def242017-11-21 09:25:31 -08001679 limit = info_dict.get(device + "_size")
Dan Albert8b72aef2015-03-23 19:13:21 -07001680 if not fs_type or not limit:
1681 return
Doug Zongkereef39442009-04-02 12:14:19 -07001682
Andrew Boie0f9aec82012-02-14 09:32:52 -08001683 size = len(data)
Tao Bao9dd909e2017-11-14 11:27:32 -08001684 # target could be 'userdata' or 'cache'. They should follow the non-AVB image
1685 # path.
1686 if info_dict.get("avb_enable") == "true" and target in AVB_PARTITIONS:
1687 if size != limit:
1688 raise ExternalError(
1689 "Mismatching image size for %s: expected %d actual %d" % (
1690 target, limit, size))
1691 else:
1692 pct = float(size) * 100.0 / limit
1693 msg = "%s size (%d) is %.2f%% of limit (%d)" % (target, size, pct, limit)
1694 if pct >= 99.0:
1695 raise ExternalError(msg)
1696 elif pct >= 95.0:
Tao Bao32fcdab2018-10-12 10:30:39 -07001697 logger.warning("\n WARNING: %s\n", msg)
1698 else:
1699 logger.info(" %s", msg)
Doug Zongkereef39442009-04-02 12:14:19 -07001700
1701
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001702def ReadApkCerts(tf_zip):
Tao Bao818ddf52018-01-05 11:17:34 -08001703 """Parses the APK certs info from a given target-files zip.
1704
1705 Given a target-files ZipFile, parses the META/apkcerts.txt entry and returns a
1706 tuple with the following elements: (1) a dictionary that maps packages to
1707 certs (based on the "certificate" and "private_key" attributes in the file;
1708 (2) a string representing the extension of compressed APKs in the target files
1709 (e.g ".gz", ".bro").
1710
1711 Args:
1712 tf_zip: The input target_files ZipFile (already open).
1713
1714 Returns:
1715 (certmap, ext): certmap is a dictionary that maps packages to certs; ext is
1716 the extension string of compressed APKs (e.g. ".gz"), or None if there's
1717 no compressed APKs.
1718 """
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001719 certmap = {}
Narayan Kamatha07bf042017-08-14 14:49:21 +01001720 compressed_extension = None
1721
Tao Bao0f990332017-09-08 19:02:54 -07001722 # META/apkcerts.txt contains the info for _all_ the packages known at build
1723 # time. Filter out the ones that are not installed.
1724 installed_files = set()
1725 for name in tf_zip.namelist():
1726 basename = os.path.basename(name)
1727 if basename:
1728 installed_files.add(basename)
1729
Tao Baoda30cfa2017-12-01 16:19:46 -08001730 for line in tf_zip.read('META/apkcerts.txt').decode().split('\n'):
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001731 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001732 if not line:
1733 continue
Tao Bao818ddf52018-01-05 11:17:34 -08001734 m = re.match(
1735 r'^name="(?P<NAME>.*)"\s+certificate="(?P<CERT>.*)"\s+'
1736 r'private_key="(?P<PRIVKEY>.*?)"(\s+compressed="(?P<COMPRESSED>.*)")?$',
1737 line)
1738 if not m:
1739 continue
Narayan Kamatha07bf042017-08-14 14:49:21 +01001740
Tao Bao818ddf52018-01-05 11:17:34 -08001741 matches = m.groupdict()
1742 cert = matches["CERT"]
1743 privkey = matches["PRIVKEY"]
1744 name = matches["NAME"]
1745 this_compressed_extension = matches["COMPRESSED"]
1746
1747 public_key_suffix_len = len(OPTIONS.public_key_suffix)
1748 private_key_suffix_len = len(OPTIONS.private_key_suffix)
1749 if cert in SPECIAL_CERT_STRINGS and not privkey:
1750 certmap[name] = cert
1751 elif (cert.endswith(OPTIONS.public_key_suffix) and
1752 privkey.endswith(OPTIONS.private_key_suffix) and
1753 cert[:-public_key_suffix_len] == privkey[:-private_key_suffix_len]):
1754 certmap[name] = cert[:-public_key_suffix_len]
1755 else:
1756 raise ValueError("Failed to parse line from apkcerts.txt:\n" + line)
1757
1758 if not this_compressed_extension:
1759 continue
1760
1761 # Only count the installed files.
1762 filename = name + '.' + this_compressed_extension
1763 if filename not in installed_files:
1764 continue
1765
1766 # Make sure that all the values in the compression map have the same
1767 # extension. We don't support multiple compression methods in the same
1768 # system image.
1769 if compressed_extension:
1770 if this_compressed_extension != compressed_extension:
1771 raise ValueError(
1772 "Multiple compressed extensions: {} vs {}".format(
1773 compressed_extension, this_compressed_extension))
1774 else:
1775 compressed_extension = this_compressed_extension
1776
1777 return (certmap,
1778 ("." + compressed_extension) if compressed_extension else None)
Doug Zongkerf6a53aa2009-12-15 15:06:55 -08001779
1780
Doug Zongkereef39442009-04-02 12:14:19 -07001781COMMON_DOCSTRING = """
Tao Bao30df8b42018-04-23 15:32:53 -07001782Global options
1783
1784 -p (--path) <dir>
1785 Prepend <dir>/bin to the list of places to search for binaries run by this
1786 script, and expect to find jars in <dir>/framework.
Doug Zongkereef39442009-04-02 12:14:19 -07001787
Doug Zongker05d3dea2009-06-22 11:32:31 -07001788 -s (--device_specific) <file>
Tao Bao30df8b42018-04-23 15:32:53 -07001789 Path to the Python module containing device-specific releasetools code.
Doug Zongker05d3dea2009-06-22 11:32:31 -07001790
Tao Bao30df8b42018-04-23 15:32:53 -07001791 -x (--extra) <key=value>
1792 Add a key/value pair to the 'extras' dict, which device-specific extension
1793 code may look at.
Doug Zongker8bec09e2009-11-30 15:37:14 -08001794
Doug Zongkereef39442009-04-02 12:14:19 -07001795 -v (--verbose)
1796 Show command lines being executed.
1797
1798 -h (--help)
1799 Display this usage message and exit.
1800"""
1801
1802def Usage(docstring):
Tao Bao89fbb0f2017-01-10 10:47:58 -08001803 print(docstring.rstrip("\n"))
1804 print(COMMON_DOCSTRING)
Doug Zongkereef39442009-04-02 12:14:19 -07001805
1806
1807def ParseOptions(argv,
1808 docstring,
1809 extra_opts="", extra_long_opts=(),
1810 extra_option_handler=None):
1811 """Parse the options in argv and return any arguments that aren't
1812 flags. docstring is the calling module's docstring, to be displayed
1813 for errors and -h. extra_opts and extra_long_opts are for flags
1814 defined by the caller, which are processed by passing them to
1815 extra_option_handler."""
1816
1817 try:
1818 opts, args = getopt.getopt(
Doug Zongker8bec09e2009-11-30 15:37:14 -08001819 argv, "hvp:s:x:" + extra_opts,
Alex Klyubin9667b182015-12-10 13:38:50 -08001820 ["help", "verbose", "path=", "signapk_path=",
1821 "signapk_shared_library_path=", "extra_signapk_args=",
Baligh Uddinbdc2e312014-09-05 17:36:20 -07001822 "java_path=", "java_args=", "public_key_suffix=",
Baligh Uddin601ddea2015-06-09 15:48:14 -07001823 "private_key_suffix=", "boot_signer_path=", "boot_signer_args=",
1824 "verity_signer_path=", "verity_signer_args=", "device_specific=",
Baligh Uddine2048682014-11-20 09:52:05 -08001825 "extra="] +
T.R. Fullhart37e10522013-03-18 10:31:26 -07001826 list(extra_long_opts))
Dan Albert8b72aef2015-03-23 19:13:21 -07001827 except getopt.GetoptError as err:
Doug Zongkereef39442009-04-02 12:14:19 -07001828 Usage(docstring)
Tao Bao89fbb0f2017-01-10 10:47:58 -08001829 print("**", str(err), "**")
Doug Zongkereef39442009-04-02 12:14:19 -07001830 sys.exit(2)
1831
Doug Zongkereef39442009-04-02 12:14:19 -07001832 for o, a in opts:
1833 if o in ("-h", "--help"):
1834 Usage(docstring)
1835 sys.exit()
1836 elif o in ("-v", "--verbose"):
1837 OPTIONS.verbose = True
1838 elif o in ("-p", "--path"):
Doug Zongker602a84e2009-06-18 08:35:12 -07001839 OPTIONS.search_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001840 elif o in ("--signapk_path",):
1841 OPTIONS.signapk_path = a
Alex Klyubin9667b182015-12-10 13:38:50 -08001842 elif o in ("--signapk_shared_library_path",):
1843 OPTIONS.signapk_shared_library_path = a
T.R. Fullhart37e10522013-03-18 10:31:26 -07001844 elif o in ("--extra_signapk_args",):
1845 OPTIONS.extra_signapk_args = shlex.split(a)
1846 elif o in ("--java_path",):
1847 OPTIONS.java_path = a
Baligh Uddin339ee492014-09-05 11:18:07 -07001848 elif o in ("--java_args",):
Tao Baoe95540e2016-11-08 12:08:53 -08001849 OPTIONS.java_args = shlex.split(a)
T.R. Fullhart37e10522013-03-18 10:31:26 -07001850 elif o in ("--public_key_suffix",):
1851 OPTIONS.public_key_suffix = a
1852 elif o in ("--private_key_suffix",):
1853 OPTIONS.private_key_suffix = a
Baligh Uddine2048682014-11-20 09:52:05 -08001854 elif o in ("--boot_signer_path",):
1855 OPTIONS.boot_signer_path = a
Baligh Uddin601ddea2015-06-09 15:48:14 -07001856 elif o in ("--boot_signer_args",):
1857 OPTIONS.boot_signer_args = shlex.split(a)
1858 elif o in ("--verity_signer_path",):
1859 OPTIONS.verity_signer_path = a
1860 elif o in ("--verity_signer_args",):
1861 OPTIONS.verity_signer_args = shlex.split(a)
Doug Zongker05d3dea2009-06-22 11:32:31 -07001862 elif o in ("-s", "--device_specific"):
1863 OPTIONS.device_specific = a
Doug Zongker5ecba702009-12-03 16:36:20 -08001864 elif o in ("-x", "--extra"):
Doug Zongker8bec09e2009-11-30 15:37:14 -08001865 key, value = a.split("=", 1)
1866 OPTIONS.extras[key] = value
Doug Zongkereef39442009-04-02 12:14:19 -07001867 else:
1868 if extra_option_handler is None or not extra_option_handler(o, a):
1869 assert False, "unknown option \"%s\"" % (o,)
1870
Doug Zongker85448772014-09-09 14:59:20 -07001871 if OPTIONS.search_path:
1872 os.environ["PATH"] = (os.path.join(OPTIONS.search_path, "bin") +
1873 os.pathsep + os.environ["PATH"])
Doug Zongkereef39442009-04-02 12:14:19 -07001874
1875 return args
1876
1877
Tao Bao4c851b12016-09-19 13:54:38 -07001878def MakeTempFile(prefix='tmp', suffix=''):
Doug Zongkerfc44a512014-08-26 13:10:25 -07001879 """Make a temp file and add it to the list of things to be deleted
1880 when Cleanup() is called. Return the filename."""
1881 fd, fn = tempfile.mkstemp(prefix=prefix, suffix=suffix)
1882 os.close(fd)
1883 OPTIONS.tempfiles.append(fn)
1884 return fn
1885
1886
Tao Bao1c830bf2017-12-25 10:43:47 -08001887def MakeTempDir(prefix='tmp', suffix=''):
1888 """Makes a temporary dir that will be cleaned up with a call to Cleanup().
1889
1890 Returns:
1891 The absolute pathname of the new directory.
1892 """
1893 dir_name = tempfile.mkdtemp(suffix=suffix, prefix=prefix)
1894 OPTIONS.tempfiles.append(dir_name)
1895 return dir_name
1896
1897
Doug Zongkereef39442009-04-02 12:14:19 -07001898def Cleanup():
1899 for i in OPTIONS.tempfiles:
1900 if os.path.isdir(i):
Tao Bao1c830bf2017-12-25 10:43:47 -08001901 shutil.rmtree(i, ignore_errors=True)
Doug Zongkereef39442009-04-02 12:14:19 -07001902 else:
1903 os.remove(i)
Tao Bao1c830bf2017-12-25 10:43:47 -08001904 del OPTIONS.tempfiles[:]
Doug Zongker8ce7c252009-05-22 13:34:54 -07001905
1906
1907class PasswordManager(object):
1908 def __init__(self):
Tao Bao76def242017-11-21 09:25:31 -08001909 self.editor = os.getenv("EDITOR")
1910 self.pwfile = os.getenv("ANDROID_PW_FILE")
Doug Zongker8ce7c252009-05-22 13:34:54 -07001911
1912 def GetPasswords(self, items):
1913 """Get passwords corresponding to each string in 'items',
1914 returning a dict. (The dict may have keys in addition to the
1915 values in 'items'.)
1916
1917 Uses the passwords in $ANDROID_PW_FILE if available, letting the
1918 user edit that file to add more needed passwords. If no editor is
1919 available, or $ANDROID_PW_FILE isn't define, prompts the user
1920 interactively in the ordinary way.
1921 """
1922
1923 current = self.ReadFile()
1924
1925 first = True
1926 while True:
1927 missing = []
1928 for i in items:
1929 if i not in current or not current[i]:
1930 missing.append(i)
1931 # Are all the passwords already in the file?
Dan Albert8b72aef2015-03-23 19:13:21 -07001932 if not missing:
1933 return current
Doug Zongker8ce7c252009-05-22 13:34:54 -07001934
1935 for i in missing:
1936 current[i] = ""
1937
1938 if not first:
Tao Bao89fbb0f2017-01-10 10:47:58 -08001939 print("key file %s still missing some passwords." % (self.pwfile,))
Tao Baoda30cfa2017-12-01 16:19:46 -08001940 if sys.version_info[0] >= 3:
1941 raw_input = input # pylint: disable=redefined-builtin
Doug Zongker8ce7c252009-05-22 13:34:54 -07001942 answer = raw_input("try to edit again? [y]> ").strip()
1943 if answer and answer[0] not in 'yY':
1944 raise RuntimeError("key passwords unavailable")
1945 first = False
1946
1947 current = self.UpdateAndReadFile(current)
1948
Dan Albert8b72aef2015-03-23 19:13:21 -07001949 def PromptResult(self, current): # pylint: disable=no-self-use
Doug Zongker8ce7c252009-05-22 13:34:54 -07001950 """Prompt the user to enter a value (password) for each key in
1951 'current' whose value is fales. Returns a new dict with all the
1952 values.
1953 """
1954 result = {}
Tao Bao38884282019-07-10 22:20:56 -07001955 for k, v in sorted(current.items()):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001956 if v:
1957 result[k] = v
1958 else:
1959 while True:
Dan Albert8b72aef2015-03-23 19:13:21 -07001960 result[k] = getpass.getpass(
1961 "Enter password for %s key> " % k).strip()
1962 if result[k]:
1963 break
Doug Zongker8ce7c252009-05-22 13:34:54 -07001964 return result
1965
1966 def UpdateAndReadFile(self, current):
1967 if not self.editor or not self.pwfile:
1968 return self.PromptResult(current)
1969
1970 f = open(self.pwfile, "w")
Dan Albert8b72aef2015-03-23 19:13:21 -07001971 os.chmod(self.pwfile, 0o600)
Doug Zongker8ce7c252009-05-22 13:34:54 -07001972 f.write("# Enter key passwords between the [[[ ]]] brackets.\n")
1973 f.write("# (Additional spaces are harmless.)\n\n")
1974
1975 first_line = None
Tao Bao38884282019-07-10 22:20:56 -07001976 sorted_list = sorted([(not v, k, v) for (k, v) in current.items()])
Dan Albert8b72aef2015-03-23 19:13:21 -07001977 for i, (_, k, v) in enumerate(sorted_list):
Doug Zongker8ce7c252009-05-22 13:34:54 -07001978 f.write("[[[ %s ]]] %s\n" % (v, k))
1979 if not v and first_line is None:
1980 # position cursor on first line with no password.
1981 first_line = i + 4
1982 f.close()
1983
Tao Bao986ee862018-10-04 15:46:16 -07001984 RunAndCheckOutput([self.editor, "+%d" % (first_line,), self.pwfile])
Doug Zongker8ce7c252009-05-22 13:34:54 -07001985
1986 return self.ReadFile()
1987
1988 def ReadFile(self):
1989 result = {}
Dan Albert8b72aef2015-03-23 19:13:21 -07001990 if self.pwfile is None:
1991 return result
Doug Zongker8ce7c252009-05-22 13:34:54 -07001992 try:
1993 f = open(self.pwfile, "r")
1994 for line in f:
1995 line = line.strip()
Dan Albert8b72aef2015-03-23 19:13:21 -07001996 if not line or line[0] == '#':
1997 continue
Doug Zongker8ce7c252009-05-22 13:34:54 -07001998 m = re.match(r"^\[\[\[\s*(.*?)\s*\]\]\]\s*(\S+)$", line)
1999 if not m:
Tao Bao32fcdab2018-10-12 10:30:39 -07002000 logger.warning("Failed to parse password file: %s", line)
Doug Zongker8ce7c252009-05-22 13:34:54 -07002001 else:
2002 result[m.group(2)] = m.group(1)
2003 f.close()
Dan Albert8b72aef2015-03-23 19:13:21 -07002004 except IOError as e:
Doug Zongker8ce7c252009-05-22 13:34:54 -07002005 if e.errno != errno.ENOENT:
Tao Bao32fcdab2018-10-12 10:30:39 -07002006 logger.exception("Error reading password file:")
Doug Zongker8ce7c252009-05-22 13:34:54 -07002007 return result
Doug Zongker048e7ca2009-06-15 14:31:53 -07002008
2009
Dan Albert8e0178d2015-01-27 15:53:15 -08002010def ZipWrite(zip_file, filename, arcname=None, perms=0o644,
2011 compress_type=None):
2012 import datetime
2013
2014 # http://b/18015246
2015 # Python 2.7's zipfile implementation wrongly thinks that zip64 is required
2016 # for files larger than 2GiB. We can work around this by adjusting their
2017 # limit. Note that `zipfile.writestr()` will not work for strings larger than
2018 # 2GiB. The Python interpreter sometimes rejects strings that large (though
2019 # it isn't clear to me exactly what circumstances cause this).
2020 # `zipfile.write()` must be used directly to work around this.
2021 #
2022 # This mess can be avoided if we port to python3.
2023 saved_zip64_limit = zipfile.ZIP64_LIMIT
2024 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2025
2026 if compress_type is None:
2027 compress_type = zip_file.compression
2028 if arcname is None:
2029 arcname = filename
2030
2031 saved_stat = os.stat(filename)
2032
2033 try:
2034 # `zipfile.write()` doesn't allow us to pass ZipInfo, so just modify the
2035 # file to be zipped and reset it when we're done.
2036 os.chmod(filename, perms)
2037
2038 # Use a fixed timestamp so the output is repeatable.
Bryan Henrye6d547d2018-07-31 18:32:00 -07002039 # Note: Use of fromtimestamp rather than utcfromtimestamp here is
2040 # intentional. zip stores datetimes in local time without a time zone
2041 # attached, so we need "epoch" but in the local time zone to get 2009/01/01
2042 # in the zip archive.
2043 local_epoch = datetime.datetime.fromtimestamp(0)
2044 timestamp = (datetime.datetime(2009, 1, 1) - local_epoch).total_seconds()
Dan Albert8e0178d2015-01-27 15:53:15 -08002045 os.utime(filename, (timestamp, timestamp))
2046
2047 zip_file.write(filename, arcname=arcname, compress_type=compress_type)
2048 finally:
2049 os.chmod(filename, saved_stat.st_mode)
2050 os.utime(filename, (saved_stat.st_atime, saved_stat.st_mtime))
2051 zipfile.ZIP64_LIMIT = saved_zip64_limit
2052
2053
Tao Bao58c1b962015-05-20 09:32:18 -07002054def ZipWriteStr(zip_file, zinfo_or_arcname, data, perms=None,
Tao Baof3282b42015-04-01 11:21:55 -07002055 compress_type=None):
2056 """Wrap zipfile.writestr() function to work around the zip64 limit.
2057
2058 Even with the ZIP64_LIMIT workaround, it won't allow writing a string
2059 longer than 2GiB. It gives 'OverflowError: size does not fit in an int'
2060 when calling crc32(bytes).
2061
2062 But it still works fine to write a shorter string into a large zip file.
2063 We should use ZipWrite() whenever possible, and only use ZipWriteStr()
2064 when we know the string won't be too long.
2065 """
2066
2067 saved_zip64_limit = zipfile.ZIP64_LIMIT
2068 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2069
2070 if not isinstance(zinfo_or_arcname, zipfile.ZipInfo):
2071 zinfo = zipfile.ZipInfo(filename=zinfo_or_arcname)
Dan Albert8b72aef2015-03-23 19:13:21 -07002072 zinfo.compress_type = zip_file.compression
Tao Bao58c1b962015-05-20 09:32:18 -07002073 if perms is None:
Tao Bao2a410582015-07-10 17:18:23 -07002074 perms = 0o100644
Geremy Condra36bd3652014-02-06 19:45:10 -08002075 else:
Tao Baof3282b42015-04-01 11:21:55 -07002076 zinfo = zinfo_or_arcname
Tao Baoc1a1ec32019-06-18 16:29:37 -07002077 # Python 2 and 3 behave differently when calling ZipFile.writestr() with
2078 # zinfo.external_attr being 0. Python 3 uses `0o600 << 16` as the value for
2079 # such a case (since
2080 # https://github.com/python/cpython/commit/18ee29d0b870caddc0806916ca2c823254f1a1f9),
2081 # which seems to make more sense. Otherwise the entry will have 0o000 as the
2082 # permission bits. We follow the logic in Python 3 to get consistent
2083 # behavior between using the two versions.
2084 if not zinfo.external_attr:
2085 zinfo.external_attr = 0o600 << 16
Tao Baof3282b42015-04-01 11:21:55 -07002086
2087 # If compress_type is given, it overrides the value in zinfo.
2088 if compress_type is not None:
2089 zinfo.compress_type = compress_type
2090
Tao Bao58c1b962015-05-20 09:32:18 -07002091 # If perms is given, it has a priority.
2092 if perms is not None:
Tao Bao2a410582015-07-10 17:18:23 -07002093 # If perms doesn't set the file type, mark it as a regular file.
2094 if perms & 0o770000 == 0:
2095 perms |= 0o100000
Tao Bao58c1b962015-05-20 09:32:18 -07002096 zinfo.external_attr = perms << 16
2097
Tao Baof3282b42015-04-01 11:21:55 -07002098 # Use a fixed timestamp so the output is repeatable.
Tao Baof3282b42015-04-01 11:21:55 -07002099 zinfo.date_time = (2009, 1, 1, 0, 0, 0)
2100
Dan Albert8b72aef2015-03-23 19:13:21 -07002101 zip_file.writestr(zinfo, data)
Tao Baof3282b42015-04-01 11:21:55 -07002102 zipfile.ZIP64_LIMIT = saved_zip64_limit
2103
2104
Tao Bao89d7ab22017-12-14 17:05:33 -08002105def ZipDelete(zip_filename, entries):
2106 """Deletes entries from a ZIP file.
2107
2108 Since deleting entries from a ZIP file is not supported, it shells out to
2109 'zip -d'.
2110
2111 Args:
2112 zip_filename: The name of the ZIP file.
2113 entries: The name of the entry, or the list of names to be deleted.
2114
2115 Raises:
2116 AssertionError: In case of non-zero return from 'zip'.
2117 """
Tao Baoc1a1ec32019-06-18 16:29:37 -07002118 if isinstance(entries, str):
Tao Bao89d7ab22017-12-14 17:05:33 -08002119 entries = [entries]
2120 cmd = ["zip", "-d", zip_filename] + entries
Tao Bao986ee862018-10-04 15:46:16 -07002121 RunAndCheckOutput(cmd)
Tao Bao89d7ab22017-12-14 17:05:33 -08002122
2123
Tao Baof3282b42015-04-01 11:21:55 -07002124def ZipClose(zip_file):
2125 # http://b/18015246
2126 # zipfile also refers to ZIP64_LIMIT during close() when it writes out the
2127 # central directory.
2128 saved_zip64_limit = zipfile.ZIP64_LIMIT
2129 zipfile.ZIP64_LIMIT = (1 << 32) - 1
2130
2131 zip_file.close()
2132
2133 zipfile.ZIP64_LIMIT = saved_zip64_limit
Doug Zongker05d3dea2009-06-22 11:32:31 -07002134
2135
2136class DeviceSpecificParams(object):
2137 module = None
2138 def __init__(self, **kwargs):
2139 """Keyword arguments to the constructor become attributes of this
2140 object, which is passed to all functions in the device-specific
2141 module."""
Tao Bao38884282019-07-10 22:20:56 -07002142 for k, v in kwargs.items():
Doug Zongker05d3dea2009-06-22 11:32:31 -07002143 setattr(self, k, v)
Doug Zongker8bec09e2009-11-30 15:37:14 -08002144 self.extras = OPTIONS.extras
Doug Zongker05d3dea2009-06-22 11:32:31 -07002145
2146 if self.module is None:
2147 path = OPTIONS.device_specific
Dan Albert8b72aef2015-03-23 19:13:21 -07002148 if not path:
2149 return
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002150 try:
2151 if os.path.isdir(path):
2152 info = imp.find_module("releasetools", [path])
2153 else:
2154 d, f = os.path.split(path)
2155 b, x = os.path.splitext(f)
2156 if x == ".py":
2157 f = b
2158 info = imp.find_module(f, [d])
Tao Bao32fcdab2018-10-12 10:30:39 -07002159 logger.info("loaded device-specific extensions from %s", path)
Doug Zongker8e2f2b92009-06-24 14:34:57 -07002160 self.module = imp.load_module("device_specific", *info)
2161 except ImportError:
Tao Bao32fcdab2018-10-12 10:30:39 -07002162 logger.info("unable to load device-specific module; assuming none")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002163
2164 def _DoCall(self, function_name, *args, **kwargs):
2165 """Call the named function in the device-specific module, passing
2166 the given args and kwargs. The first argument to the call will be
2167 the DeviceSpecific object itself. If there is no module, or the
2168 module does not define the function, return the value of the
2169 'default' kwarg (which itself defaults to None)."""
2170 if self.module is None or not hasattr(self.module, function_name):
Tao Bao76def242017-11-21 09:25:31 -08002171 return kwargs.get("default")
Doug Zongker05d3dea2009-06-22 11:32:31 -07002172 return getattr(self.module, function_name)(*((self,) + args), **kwargs)
2173
2174 def FullOTA_Assertions(self):
2175 """Called after emitting the block of assertions at the top of a
2176 full OTA package. Implementations can add whatever additional
2177 assertions they like."""
2178 return self._DoCall("FullOTA_Assertions")
2179
Doug Zongkere5ff5902012-01-17 10:55:37 -08002180 def FullOTA_InstallBegin(self):
2181 """Called at the start of full OTA installation."""
2182 return self._DoCall("FullOTA_InstallBegin")
2183
Yifan Hong10c530d2018-12-27 17:34:18 -08002184 def FullOTA_GetBlockDifferences(self):
2185 """Called during full OTA installation and verification.
2186 Implementation should return a list of BlockDifference objects describing
2187 the update on each additional partitions.
2188 """
2189 return self._DoCall("FullOTA_GetBlockDifferences")
2190
Doug Zongker05d3dea2009-06-22 11:32:31 -07002191 def FullOTA_InstallEnd(self):
2192 """Called at the end of full OTA installation; typically this is
2193 used to install the image for the device's baseband processor."""
2194 return self._DoCall("FullOTA_InstallEnd")
2195
2196 def IncrementalOTA_Assertions(self):
2197 """Called after emitting the block of assertions at the top of an
2198 incremental OTA package. Implementations can add whatever
2199 additional assertions they like."""
2200 return self._DoCall("IncrementalOTA_Assertions")
2201
Doug Zongkere5ff5902012-01-17 10:55:37 -08002202 def IncrementalOTA_VerifyBegin(self):
2203 """Called at the start of the verification phase of incremental
2204 OTA installation; additional checks can be placed here to abort
2205 the script before any changes are made."""
2206 return self._DoCall("IncrementalOTA_VerifyBegin")
2207
Doug Zongker05d3dea2009-06-22 11:32:31 -07002208 def IncrementalOTA_VerifyEnd(self):
2209 """Called at the end of the verification phase of incremental OTA
2210 installation; additional checks can be placed here to abort the
2211 script before any changes are made."""
2212 return self._DoCall("IncrementalOTA_VerifyEnd")
2213
Doug Zongkere5ff5902012-01-17 10:55:37 -08002214 def IncrementalOTA_InstallBegin(self):
2215 """Called at the start of incremental OTA installation (after
2216 verification is complete)."""
2217 return self._DoCall("IncrementalOTA_InstallBegin")
2218
Yifan Hong10c530d2018-12-27 17:34:18 -08002219 def IncrementalOTA_GetBlockDifferences(self):
2220 """Called during incremental OTA installation and verification.
2221 Implementation should return a list of BlockDifference objects describing
2222 the update on each additional partitions.
2223 """
2224 return self._DoCall("IncrementalOTA_GetBlockDifferences")
2225
Doug Zongker05d3dea2009-06-22 11:32:31 -07002226 def IncrementalOTA_InstallEnd(self):
2227 """Called at the end of incremental OTA installation; typically
2228 this is used to install the image for the device's baseband
2229 processor."""
2230 return self._DoCall("IncrementalOTA_InstallEnd")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002231
Tao Bao9bc6bb22015-11-09 16:58:28 -08002232 def VerifyOTA_Assertions(self):
2233 return self._DoCall("VerifyOTA_Assertions")
2234
Tao Bao76def242017-11-21 09:25:31 -08002235
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002236class File(object):
Tao Bao76def242017-11-21 09:25:31 -08002237 def __init__(self, name, data, compress_size=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002238 self.name = name
2239 self.data = data
2240 self.size = len(data)
YOUNG HO CHAccc5c402016-10-13 13:40:46 +09002241 self.compress_size = compress_size or self.size
Doug Zongker55d93282011-01-25 17:03:34 -08002242 self.sha1 = sha1(data).hexdigest()
2243
2244 @classmethod
2245 def FromLocalFile(cls, name, diskname):
2246 f = open(diskname, "rb")
2247 data = f.read()
2248 f.close()
2249 return File(name, data)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002250
2251 def WriteToTemp(self):
2252 t = tempfile.NamedTemporaryFile()
2253 t.write(self.data)
2254 t.flush()
2255 return t
2256
Dan Willemsen2ee00d52017-03-05 19:51:56 -08002257 def WriteToDir(self, d):
2258 with open(os.path.join(d, self.name), "wb") as fp:
2259 fp.write(self.data)
2260
Geremy Condra36bd3652014-02-06 19:45:10 -08002261 def AddToZip(self, z, compression=None):
Tao Baof3282b42015-04-01 11:21:55 -07002262 ZipWriteStr(z, self.name, self.data, compress_type=compression)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002263
Tao Bao76def242017-11-21 09:25:31 -08002264
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002265DIFF_PROGRAM_BY_EXT = {
2266 ".gz" : "imgdiff",
2267 ".zip" : ["imgdiff", "-z"],
2268 ".jar" : ["imgdiff", "-z"],
2269 ".apk" : ["imgdiff", "-z"],
2270 ".img" : "imgdiff",
2271 }
2272
Tao Bao76def242017-11-21 09:25:31 -08002273
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002274class Difference(object):
Doug Zongker24cd2802012-08-14 16:36:15 -07002275 def __init__(self, tf, sf, diff_program=None):
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002276 self.tf = tf
2277 self.sf = sf
2278 self.patch = None
Doug Zongker24cd2802012-08-14 16:36:15 -07002279 self.diff_program = diff_program
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002280
2281 def ComputePatch(self):
2282 """Compute the patch (as a string of data) needed to turn sf into
2283 tf. Returns the same tuple as GetPatch()."""
2284
2285 tf = self.tf
2286 sf = self.sf
2287
Doug Zongker24cd2802012-08-14 16:36:15 -07002288 if self.diff_program:
2289 diff_program = self.diff_program
2290 else:
2291 ext = os.path.splitext(tf.name)[1]
2292 diff_program = DIFF_PROGRAM_BY_EXT.get(ext, "bsdiff")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002293
2294 ttemp = tf.WriteToTemp()
2295 stemp = sf.WriteToTemp()
2296
2297 ext = os.path.splitext(tf.name)[1]
2298
2299 try:
2300 ptemp = tempfile.NamedTemporaryFile()
2301 if isinstance(diff_program, list):
2302 cmd = copy.copy(diff_program)
2303 else:
2304 cmd = [diff_program]
2305 cmd.append(stemp.name)
2306 cmd.append(ttemp.name)
2307 cmd.append(ptemp.name)
2308 p = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
Doug Zongkerf8340082014-08-05 10:39:37 -07002309 err = []
2310 def run():
2311 _, e = p.communicate()
Dan Albert8b72aef2015-03-23 19:13:21 -07002312 if e:
2313 err.append(e)
Doug Zongkerf8340082014-08-05 10:39:37 -07002314 th = threading.Thread(target=run)
2315 th.start()
2316 th.join(timeout=300) # 5 mins
2317 if th.is_alive():
Tao Bao32fcdab2018-10-12 10:30:39 -07002318 logger.warning("diff command timed out")
Doug Zongkerf8340082014-08-05 10:39:37 -07002319 p.terminate()
2320 th.join(5)
2321 if th.is_alive():
2322 p.kill()
2323 th.join()
2324
Tianjie Xua2a9f992018-01-05 15:15:54 -08002325 if p.returncode != 0:
Tao Bao32fcdab2018-10-12 10:30:39 -07002326 logger.warning("Failure running %s:\n%s\n", diff_program, "".join(err))
Doug Zongkerf8340082014-08-05 10:39:37 -07002327 self.patch = None
2328 return None, None, None
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002329 diff = ptemp.read()
2330 finally:
2331 ptemp.close()
2332 stemp.close()
2333 ttemp.close()
2334
2335 self.patch = diff
2336 return self.tf, self.sf, self.patch
2337
2338
2339 def GetPatch(self):
Tao Bao76def242017-11-21 09:25:31 -08002340 """Returns a tuple of (target_file, source_file, patch_data).
2341
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002342 patch_data may be None if ComputePatch hasn't been called, or if
Tao Bao76def242017-11-21 09:25:31 -08002343 computing the patch failed.
2344 """
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002345 return self.tf, self.sf, self.patch
2346
2347
2348def ComputeDifferences(diffs):
2349 """Call ComputePatch on all the Difference objects in 'diffs'."""
Tao Bao32fcdab2018-10-12 10:30:39 -07002350 logger.info("%d diffs to compute", len(diffs))
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002351
2352 # Do the largest files first, to try and reduce the long-pole effect.
2353 by_size = [(i.tf.size, i) for i in diffs]
2354 by_size.sort(reverse=True)
2355 by_size = [i[1] for i in by_size]
2356
2357 lock = threading.Lock()
2358 diff_iter = iter(by_size) # accessed under lock
2359
2360 def worker():
2361 try:
2362 lock.acquire()
2363 for d in diff_iter:
2364 lock.release()
2365 start = time.time()
2366 d.ComputePatch()
2367 dur = time.time() - start
2368 lock.acquire()
2369
2370 tf, sf, patch = d.GetPatch()
2371 if sf.name == tf.name:
2372 name = tf.name
2373 else:
2374 name = "%s (%s)" % (tf.name, sf.name)
2375 if patch is None:
Tao Bao32fcdab2018-10-12 10:30:39 -07002376 logger.error("patching failed! %40s", name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002377 else:
Tao Bao32fcdab2018-10-12 10:30:39 -07002378 logger.info(
2379 "%8.2f sec %8d / %8d bytes (%6.2f%%) %s", dur, len(patch),
2380 tf.size, 100.0 * len(patch) / tf.size, name)
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002381 lock.release()
Tao Bao32fcdab2018-10-12 10:30:39 -07002382 except Exception:
2383 logger.exception("Failed to compute diff from worker")
Doug Zongkerea5d7a92010-09-12 15:26:16 -07002384 raise
2385
2386 # start worker threads; wait for them all to finish.
2387 threads = [threading.Thread(target=worker)
2388 for i in range(OPTIONS.worker_threads)]
2389 for th in threads:
2390 th.start()
2391 while threads:
2392 threads.pop().join()
Doug Zongker96a57e72010-09-26 14:57:41 -07002393
2394
Dan Albert8b72aef2015-03-23 19:13:21 -07002395class BlockDifference(object):
2396 def __init__(self, partition, tgt, src=None, check_first_block=False,
Tao Bao293fd132016-06-11 12:19:23 -07002397 version=None, disable_imgdiff=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002398 self.tgt = tgt
2399 self.src = src
2400 self.partition = partition
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002401 self.check_first_block = check_first_block
Tao Bao293fd132016-06-11 12:19:23 -07002402 self.disable_imgdiff = disable_imgdiff
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002403
Tao Baodd2a5892015-03-12 12:32:37 -07002404 if version is None:
Tao Bao0582cb62017-12-21 11:47:01 -08002405 version = max(
2406 int(i) for i in
2407 OPTIONS.info_dict.get("blockimgdiff_versions", "1").split(","))
Tao Bao8fad03e2017-03-01 14:36:26 -08002408 assert version >= 3
Tao Baodd2a5892015-03-12 12:32:37 -07002409 self.version = version
Doug Zongker62338182014-09-08 08:29:55 -07002410
Tianjie Xu41976c72019-07-03 13:57:01 -07002411 b = BlockImageDiff(tgt, src, threads=OPTIONS.worker_threads,
2412 version=self.version,
2413 disable_imgdiff=self.disable_imgdiff)
Tao Bao04bce3a2018-02-28 11:11:00 -08002414 self.path = os.path.join(MakeTempDir(), partition)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002415 b.Compute(self.path)
Tao Baod8d14be2016-02-04 14:26:02 -08002416 self._required_cache = b.max_stashed_size
Tao Baod522bdc2016-04-12 15:53:16 -07002417 self.touched_src_ranges = b.touched_src_ranges
2418 self.touched_src_sha1 = b.touched_src_sha1
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002419
Yifan Hong10c530d2018-12-27 17:34:18 -08002420 # On devices with dynamic partitions, for new partitions,
2421 # src is None but OPTIONS.source_info_dict is not.
2422 if OPTIONS.source_info_dict is None:
2423 is_dynamic_build = OPTIONS.info_dict.get(
2424 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002425 is_dynamic_source = False
Tao Baoaac4ad52015-10-16 15:26:34 -07002426 else:
Yifan Hong10c530d2018-12-27 17:34:18 -08002427 is_dynamic_build = OPTIONS.source_info_dict.get(
2428 "use_dynamic_partitions") == "true"
Yifan Hongbb2658d2019-01-25 12:30:58 -08002429 is_dynamic_source = partition in shlex.split(
2430 OPTIONS.source_info_dict.get("dynamic_partition_list", "").strip())
Yifan Hong10c530d2018-12-27 17:34:18 -08002431
Yifan Hongbb2658d2019-01-25 12:30:58 -08002432 is_dynamic_target = partition in shlex.split(
Yifan Hong10c530d2018-12-27 17:34:18 -08002433 OPTIONS.info_dict.get("dynamic_partition_list", "").strip())
2434
Yifan Hongbb2658d2019-01-25 12:30:58 -08002435 # For dynamic partitions builds, check partition list in both source
2436 # and target build because new partitions may be added, and existing
2437 # partitions may be removed.
2438 is_dynamic = is_dynamic_build and (is_dynamic_source or is_dynamic_target)
2439
Yifan Hong10c530d2018-12-27 17:34:18 -08002440 if is_dynamic:
2441 self.device = 'map_partition("%s")' % partition
2442 else:
2443 if OPTIONS.source_info_dict is None:
2444 _, device_path = GetTypeAndDevice("/" + partition, OPTIONS.info_dict)
2445 else:
2446 _, device_path = GetTypeAndDevice("/" + partition,
2447 OPTIONS.source_info_dict)
2448 self.device = '"%s"' % device_path
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002449
Tao Baod8d14be2016-02-04 14:26:02 -08002450 @property
2451 def required_cache(self):
2452 return self._required_cache
2453
Tao Bao76def242017-11-21 09:25:31 -08002454 def WriteScript(self, script, output_zip, progress=None,
2455 write_verify_script=False):
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002456 if not self.src:
2457 # write the output unconditionally
Jesse Zhao75bcea02015-01-06 10:59:53 -08002458 script.Print("Patching %s image unconditionally..." % (self.partition,))
2459 else:
2460 script.Print("Patching %s image after verification." % (self.partition,))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002461
Dan Albert8b72aef2015-03-23 19:13:21 -07002462 if progress:
2463 script.ShowProgress(progress, 0)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002464 self._WriteUpdate(script, output_zip)
Tao Bao76def242017-11-21 09:25:31 -08002465
2466 if write_verify_script:
Yifan Hong10c530d2018-12-27 17:34:18 -08002467 self.WritePostInstallVerifyScript(script)
Jesse Zhao75bcea02015-01-06 10:59:53 -08002468
Tao Bao9bc6bb22015-11-09 16:58:28 -08002469 def WriteStrictVerifyScript(self, script):
2470 """Verify all the blocks in the care_map, including clobbered blocks.
2471
2472 This differs from the WriteVerifyScript() function: a) it prints different
2473 error messages; b) it doesn't allow half-way updated images to pass the
2474 verification."""
2475
2476 partition = self.partition
2477 script.Print("Verifying %s..." % (partition,))
2478 ranges = self.tgt.care_map
2479 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002480 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002481 'range_sha1(%s, "%s") == "%s" && ui_print(" Verified.") || '
2482 'ui_print("%s has unexpected contents.");' % (
Tao Bao76def242017-11-21 09:25:31 -08002483 self.device, ranges_str,
2484 self.tgt.TotalSha1(include_clobbered_blocks=True),
Yifan Hong10c530d2018-12-27 17:34:18 -08002485 self.partition))
Tao Bao9bc6bb22015-11-09 16:58:28 -08002486 script.AppendExtra("")
2487
Tao Baod522bdc2016-04-12 15:53:16 -07002488 def WriteVerifyScript(self, script, touched_blocks_only=False):
Sami Tolvanendd67a292014-12-09 16:40:34 +00002489 partition = self.partition
Tao Baof9efe282016-04-14 15:58:05 -07002490
2491 # full OTA
Jesse Zhao75bcea02015-01-06 10:59:53 -08002492 if not self.src:
Sami Tolvanendd67a292014-12-09 16:40:34 +00002493 script.Print("Image %s will be patched unconditionally." % (partition,))
Tao Baof9efe282016-04-14 15:58:05 -07002494
2495 # incremental OTA
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002496 else:
Tao Bao8fad03e2017-03-01 14:36:26 -08002497 if touched_blocks_only:
Tao Baod522bdc2016-04-12 15:53:16 -07002498 ranges = self.touched_src_ranges
2499 expected_sha1 = self.touched_src_sha1
2500 else:
2501 ranges = self.src.care_map.subtract(self.src.clobbered_blocks)
2502 expected_sha1 = self.src.TotalSha1()
Tao Baof9efe282016-04-14 15:58:05 -07002503
2504 # No blocks to be checked, skipping.
2505 if not ranges:
2506 return
2507
Tao Bao5ece99d2015-05-12 11:42:31 -07002508 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002509 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002510 'if (range_sha1(%s, "%s") == "%s" || block_image_verify(%s, '
Tao Bao76def242017-11-21 09:25:31 -08002511 'package_extract_file("%s.transfer.list"), "%s.new.dat", '
2512 '"%s.patch.dat")) then' % (
2513 self.device, ranges_str, expected_sha1,
2514 self.device, partition, partition, partition))
Tao Baodd2a5892015-03-12 12:32:37 -07002515 script.Print('Verified %s image...' % (partition,))
Dan Albert8b72aef2015-03-23 19:13:21 -07002516 script.AppendExtra('else')
Sami Tolvanendd67a292014-12-09 16:40:34 +00002517
Tianjie Xufc3422a2015-12-15 11:53:59 -08002518 if self.version >= 4:
2519
2520 # Bug: 21124327
2521 # When generating incrementals for the system and vendor partitions in
2522 # version 4 or newer, explicitly check the first block (which contains
2523 # the superblock) of the partition to see if it's what we expect. If
2524 # this check fails, give an explicit log message about the partition
2525 # having been remounted R/W (the most likely explanation).
2526 if self.check_first_block:
Yifan Hong10c530d2018-12-27 17:34:18 -08002527 script.AppendExtra('check_first_block(%s);' % (self.device,))
Tianjie Xufc3422a2015-12-15 11:53:59 -08002528
2529 # If version >= 4, try block recovery before abort update
Tianjie Xu209db462016-05-24 17:34:52 -07002530 if partition == "system":
2531 code = ErrorCode.SYSTEM_RECOVER_FAILURE
2532 else:
2533 code = ErrorCode.VENDOR_RECOVER_FAILURE
Tianjie Xufc3422a2015-12-15 11:53:59 -08002534 script.AppendExtra((
Yifan Hong10c530d2018-12-27 17:34:18 -08002535 'ifelse (block_image_recover({device}, "{ranges}") && '
2536 'block_image_verify({device}, '
Tianjie Xufc3422a2015-12-15 11:53:59 -08002537 'package_extract_file("{partition}.transfer.list"), '
2538 '"{partition}.new.dat", "{partition}.patch.dat"), '
2539 'ui_print("{partition} recovered successfully."), '
Tianjie Xu209db462016-05-24 17:34:52 -07002540 'abort("E{code}: {partition} partition fails to recover"));\n'
Tianjie Xufc3422a2015-12-15 11:53:59 -08002541 'endif;').format(device=self.device, ranges=ranges_str,
Tianjie Xu209db462016-05-24 17:34:52 -07002542 partition=partition, code=code))
Doug Zongkerb34fcce2014-09-11 09:34:56 -07002543
Tao Baodd2a5892015-03-12 12:32:37 -07002544 # Abort the OTA update. Note that the incremental OTA cannot be applied
2545 # even if it may match the checksum of the target partition.
2546 # a) If version < 3, operations like move and erase will make changes
2547 # unconditionally and damage the partition.
2548 # b) If version >= 3, it won't even reach here.
Tianjie Xufc3422a2015-12-15 11:53:59 -08002549 else:
Tianjie Xu209db462016-05-24 17:34:52 -07002550 if partition == "system":
2551 code = ErrorCode.SYSTEM_VERIFICATION_FAILURE
2552 else:
2553 code = ErrorCode.VENDOR_VERIFICATION_FAILURE
2554 script.AppendExtra((
2555 'abort("E%d: %s partition has unexpected contents");\n'
2556 'endif;') % (code, partition))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002557
Yifan Hong10c530d2018-12-27 17:34:18 -08002558 def WritePostInstallVerifyScript(self, script):
Tao Bao5fcaaef2015-06-01 13:40:49 -07002559 partition = self.partition
2560 script.Print('Verifying the updated %s image...' % (partition,))
2561 # Unlike pre-install verification, clobbered_blocks should not be ignored.
2562 ranges = self.tgt.care_map
2563 ranges_str = ranges.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002564 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002565 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002566 self.device, ranges_str,
2567 self.tgt.TotalSha1(include_clobbered_blocks=True)))
Tao Baoe9b61912015-07-09 17:37:49 -07002568
2569 # Bug: 20881595
2570 # Verify that extended blocks are really zeroed out.
2571 if self.tgt.extended:
2572 ranges_str = self.tgt.extended.to_string_raw()
Tao Bao76def242017-11-21 09:25:31 -08002573 script.AppendExtra(
Yifan Hong10c530d2018-12-27 17:34:18 -08002574 'if range_sha1(%s, "%s") == "%s" then' % (
Tao Bao76def242017-11-21 09:25:31 -08002575 self.device, ranges_str,
2576 self._HashZeroBlocks(self.tgt.extended.size())))
Tao Baoe9b61912015-07-09 17:37:49 -07002577 script.Print('Verified the updated %s image.' % (partition,))
Tianjie Xu209db462016-05-24 17:34:52 -07002578 if partition == "system":
2579 code = ErrorCode.SYSTEM_NONZERO_CONTENTS
2580 else:
2581 code = ErrorCode.VENDOR_NONZERO_CONTENTS
Tao Baoe9b61912015-07-09 17:37:49 -07002582 script.AppendExtra(
2583 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002584 ' abort("E%d: %s partition has unexpected non-zero contents after '
2585 'OTA update");\n'
2586 'endif;' % (code, partition))
Tao Baoe9b61912015-07-09 17:37:49 -07002587 else:
2588 script.Print('Verified the updated %s image.' % (partition,))
2589
Tianjie Xu209db462016-05-24 17:34:52 -07002590 if partition == "system":
2591 code = ErrorCode.SYSTEM_UNEXPECTED_CONTENTS
2592 else:
2593 code = ErrorCode.VENDOR_UNEXPECTED_CONTENTS
2594
Tao Bao5fcaaef2015-06-01 13:40:49 -07002595 script.AppendExtra(
2596 'else\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002597 ' abort("E%d: %s partition has unexpected contents after OTA '
2598 'update");\n'
2599 'endif;' % (code, partition))
Tao Bao5fcaaef2015-06-01 13:40:49 -07002600
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002601 def _WriteUpdate(self, script, output_zip):
Dan Albert8e0178d2015-01-27 15:53:15 -08002602 ZipWrite(output_zip,
2603 '{}.transfer.list'.format(self.path),
2604 '{}.transfer.list'.format(self.partition))
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002605
Tao Bao76def242017-11-21 09:25:31 -08002606 # For full OTA, compress the new.dat with brotli with quality 6 to reduce
2607 # its size. Quailty 9 almost triples the compression time but doesn't
2608 # further reduce the size too much. For a typical 1.8G system.new.dat
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002609 # zip | brotli(quality 6) | brotli(quality 9)
2610 # compressed_size: 942M | 869M (~8% reduced) | 854M
2611 # compression_time: 75s | 265s | 719s
2612 # decompression_time: 15s | 25s | 25s
2613
2614 if not self.src:
Alex Deymob10e07a2017-11-09 23:53:42 +01002615 brotli_cmd = ['brotli', '--quality=6',
2616 '--output={}.new.dat.br'.format(self.path),
2617 '{}.new.dat'.format(self.path)]
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002618 print("Compressing {}.new.dat with brotli".format(self.partition))
Tao Bao986ee862018-10-04 15:46:16 -07002619 RunAndCheckOutput(brotli_cmd)
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002620
2621 new_data_name = '{}.new.dat.br'.format(self.partition)
2622 ZipWrite(output_zip,
2623 '{}.new.dat.br'.format(self.path),
2624 new_data_name,
2625 compress_type=zipfile.ZIP_STORED)
2626 else:
2627 new_data_name = '{}.new.dat'.format(self.partition)
2628 ZipWrite(output_zip, '{}.new.dat'.format(self.path), new_data_name)
2629
Dan Albert8e0178d2015-01-27 15:53:15 -08002630 ZipWrite(output_zip,
2631 '{}.patch.dat'.format(self.path),
2632 '{}.patch.dat'.format(self.partition),
2633 compress_type=zipfile.ZIP_STORED)
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002634
Tianjie Xu209db462016-05-24 17:34:52 -07002635 if self.partition == "system":
2636 code = ErrorCode.SYSTEM_UPDATE_FAILURE
2637 else:
2638 code = ErrorCode.VENDOR_UPDATE_FAILURE
2639
Yifan Hong10c530d2018-12-27 17:34:18 -08002640 call = ('block_image_update({device}, '
Dan Albert8e0178d2015-01-27 15:53:15 -08002641 'package_extract_file("{partition}.transfer.list"), '
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002642 '"{new_data_name}", "{partition}.patch.dat") ||\n'
Tianjie Xu209db462016-05-24 17:34:52 -07002643 ' abort("E{code}: Failed to update {partition} image.");'.format(
Tianjie Xub0a29ad2017-07-06 15:13:59 -07002644 device=self.device, partition=self.partition,
2645 new_data_name=new_data_name, code=code))
Dan Albert8b72aef2015-03-23 19:13:21 -07002646 script.AppendExtra(script.WordWrap(call))
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002647
Dan Albert8b72aef2015-03-23 19:13:21 -07002648 def _HashBlocks(self, source, ranges): # pylint: disable=no-self-use
Sami Tolvanendd67a292014-12-09 16:40:34 +00002649 data = source.ReadRangeSet(ranges)
2650 ctx = sha1()
2651
2652 for p in data:
2653 ctx.update(p)
2654
2655 return ctx.hexdigest()
2656
Tao Baoe9b61912015-07-09 17:37:49 -07002657 def _HashZeroBlocks(self, num_blocks): # pylint: disable=no-self-use
2658 """Return the hash value for all zero blocks."""
2659 zero_block = '\x00' * 4096
2660 ctx = sha1()
2661 for _ in range(num_blocks):
2662 ctx.update(zero_block)
2663
2664 return ctx.hexdigest()
2665
Doug Zongkerab7ca1d2014-08-26 10:40:28 -07002666
Tianjie Xu41976c72019-07-03 13:57:01 -07002667# Expose these two classes to support vendor-specific scripts
2668DataImage = images.DataImage
2669EmptyImage = images.EmptyImage
2670
Tao Bao76def242017-11-21 09:25:31 -08002671
Doug Zongker96a57e72010-09-26 14:57:41 -07002672# map recovery.fstab's fs_types to mount/format "partition types"
Dan Albert8b72aef2015-03-23 19:13:21 -07002673PARTITION_TYPES = {
Dan Albert8b72aef2015-03-23 19:13:21 -07002674 "ext4": "EMMC",
2675 "emmc": "EMMC",
Mohamad Ayyash95e74c12015-05-01 15:39:36 -07002676 "f2fs": "EMMC",
2677 "squashfs": "EMMC"
Dan Albert8b72aef2015-03-23 19:13:21 -07002678}
Doug Zongker96a57e72010-09-26 14:57:41 -07002679
Tao Bao76def242017-11-21 09:25:31 -08002680
Doug Zongker96a57e72010-09-26 14:57:41 -07002681def GetTypeAndDevice(mount_point, info):
2682 fstab = info["fstab"]
2683 if fstab:
Dan Albert8b72aef2015-03-23 19:13:21 -07002684 return (PARTITION_TYPES[fstab[mount_point].fs_type],
2685 fstab[mount_point].device)
Doug Zongker96a57e72010-09-26 14:57:41 -07002686 else:
Dan Albert8b72aef2015-03-23 19:13:21 -07002687 raise KeyError
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002688
2689
2690def ParseCertificate(data):
Tao Bao17e4e612018-02-16 17:12:54 -08002691 """Parses and converts a PEM-encoded certificate into DER-encoded.
2692
2693 This gives the same result as `openssl x509 -in <filename> -outform DER`.
2694
2695 Returns:
Tao Baoda30cfa2017-12-01 16:19:46 -08002696 The decoded certificate bytes.
Tao Bao17e4e612018-02-16 17:12:54 -08002697 """
2698 cert_buffer = []
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002699 save = False
2700 for line in data.split("\n"):
2701 if "--END CERTIFICATE--" in line:
2702 break
2703 if save:
Tao Bao17e4e612018-02-16 17:12:54 -08002704 cert_buffer.append(line)
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002705 if "--BEGIN CERTIFICATE--" in line:
2706 save = True
Tao Baoda30cfa2017-12-01 16:19:46 -08002707 cert = base64.b64decode("".join(cert_buffer))
Baligh Uddinbeb6afd2013-11-13 00:22:34 +00002708 return cert
Doug Zongkerc9253822014-02-04 12:17:58 -08002709
Tao Bao04e1f012018-02-04 12:13:35 -08002710
2711def ExtractPublicKey(cert):
2712 """Extracts the public key (PEM-encoded) from the given certificate file.
2713
2714 Args:
2715 cert: The certificate filename.
2716
2717 Returns:
2718 The public key string.
2719
2720 Raises:
2721 AssertionError: On non-zero return from 'openssl'.
2722 """
2723 # The behavior with '-out' is different between openssl 1.1 and openssl 1.0.
2724 # While openssl 1.1 writes the key into the given filename followed by '-out',
2725 # openssl 1.0 (both of 1.0.1 and 1.0.2) doesn't. So we collect the output from
2726 # stdout instead.
2727 cmd = ['openssl', 'x509', '-pubkey', '-noout', '-in', cert]
2728 proc = Run(cmd, stdout=subprocess.PIPE, stderr=subprocess.PIPE)
2729 pubkey, stderrdata = proc.communicate()
2730 assert proc.returncode == 0, \
2731 'Failed to dump public key from certificate: %s\n%s' % (cert, stderrdata)
2732 return pubkey
2733
2734
Tao Bao1ac886e2019-06-26 11:58:22 -07002735def ExtractAvbPublicKey(avbtool, key):
Tao Bao2cc0ca12019-03-15 10:44:43 -07002736 """Extracts the AVB public key from the given public or private key.
2737
2738 Args:
Tao Bao1ac886e2019-06-26 11:58:22 -07002739 avbtool: The AVB tool to use.
Tao Bao2cc0ca12019-03-15 10:44:43 -07002740 key: The input key file, which should be PEM-encoded public or private key.
2741
2742 Returns:
2743 The path to the extracted AVB public key file.
2744 """
2745 output = MakeTempFile(prefix='avb-', suffix='.avbpubkey')
2746 RunAndCheckOutput(
Tao Bao1ac886e2019-06-26 11:58:22 -07002747 [avbtool, 'extract_public_key', "--key", key, "--output", output])
Tao Bao2cc0ca12019-03-15 10:44:43 -07002748 return output
2749
2750
Doug Zongker412c02f2014-02-13 10:58:24 -08002751def MakeRecoveryPatch(input_dir, output_sink, recovery_img, boot_img,
2752 info_dict=None):
Tao Bao6d5d6232018-03-09 17:04:42 -08002753 """Generates the recovery-from-boot patch and writes the script to output.
Doug Zongkerc9253822014-02-04 12:17:58 -08002754
Tao Bao6d5d6232018-03-09 17:04:42 -08002755 Most of the space in the boot and recovery images is just the kernel, which is
2756 identical for the two, so the resulting patch should be efficient. Add it to
2757 the output zip, along with a shell script that is run from init.rc on first
2758 boot to actually do the patching and install the new recovery image.
2759
2760 Args:
2761 input_dir: The top-level input directory of the target-files.zip.
2762 output_sink: The callback function that writes the result.
2763 recovery_img: File object for the recovery image.
2764 boot_img: File objects for the boot image.
2765 info_dict: A dict returned by common.LoadInfoDict() on the input
2766 target_files. Will use OPTIONS.info_dict if None has been given.
Doug Zongkerc9253822014-02-04 12:17:58 -08002767 """
Doug Zongker412c02f2014-02-13 10:58:24 -08002768 if info_dict is None:
2769 info_dict = OPTIONS.info_dict
2770
Tao Bao6d5d6232018-03-09 17:04:42 -08002771 full_recovery_image = info_dict.get("full_recovery_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002772 board_uses_vendorimage = info_dict.get("board_uses_vendorimage") == "true"
2773
2774 if board_uses_vendorimage:
2775 # In this case, the output sink is rooted at VENDOR
2776 recovery_img_path = "etc/recovery.img"
2777 recovery_resource_dat_path = "VENDOR/etc/recovery-resource.dat"
2778 sh_dir = "bin"
2779 else:
2780 # In this case the output sink is rooted at SYSTEM
2781 recovery_img_path = "vendor/etc/recovery.img"
2782 recovery_resource_dat_path = "SYSTEM/vendor/etc/recovery-resource.dat"
2783 sh_dir = "vendor/bin"
Doug Zongkerc9253822014-02-04 12:17:58 -08002784
Tao Baof2cffbd2015-07-22 12:33:18 -07002785 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002786 output_sink(recovery_img_path, recovery_img.data)
Tao Baof2cffbd2015-07-22 12:33:18 -07002787
2788 else:
Tao Bao6d5d6232018-03-09 17:04:42 -08002789 system_root_image = info_dict.get("system_root_image") == "true"
Bill Peckhame868aec2019-09-17 17:06:47 -07002790 path = os.path.join(input_dir, recovery_resource_dat_path)
Tao Bao6d5d6232018-03-09 17:04:42 -08002791 # With system-root-image, boot and recovery images will have mismatching
2792 # entries (only recovery has the ramdisk entry) (Bug: 72731506). Use bsdiff
2793 # to handle such a case.
2794 if system_root_image:
2795 diff_program = ["bsdiff"]
Tao Baof2cffbd2015-07-22 12:33:18 -07002796 bonus_args = ""
Tao Bao6d5d6232018-03-09 17:04:42 -08002797 assert not os.path.exists(path)
2798 else:
2799 diff_program = ["imgdiff"]
2800 if os.path.exists(path):
2801 diff_program.append("-b")
2802 diff_program.append(path)
Bill Peckhame868aec2019-09-17 17:06:47 -07002803 bonus_args = "--bonus /vendor/etc/recovery-resource.dat"
Tao Bao6d5d6232018-03-09 17:04:42 -08002804 else:
2805 bonus_args = ""
Tao Baof2cffbd2015-07-22 12:33:18 -07002806
2807 d = Difference(recovery_img, boot_img, diff_program=diff_program)
2808 _, _, patch = d.ComputePatch()
2809 output_sink("recovery-from-boot.p", patch)
Doug Zongkerc9253822014-02-04 12:17:58 -08002810
Dan Albertebb19aa2015-03-27 19:11:53 -07002811 try:
Tao Bao6f0b2192015-10-13 16:37:12 -07002812 # The following GetTypeAndDevice()s need to use the path in the target
2813 # info_dict instead of source_info_dict.
Dan Albertebb19aa2015-03-27 19:11:53 -07002814 boot_type, boot_device = GetTypeAndDevice("/boot", info_dict)
2815 recovery_type, recovery_device = GetTypeAndDevice("/recovery", info_dict)
2816 except KeyError:
Ying Wanga961a092014-07-29 11:42:37 -07002817 return
Doug Zongkerc9253822014-02-04 12:17:58 -08002818
Tao Baof2cffbd2015-07-22 12:33:18 -07002819 if full_recovery_image:
Bill Peckhame868aec2019-09-17 17:06:47 -07002820
2821 # Note that we use /vendor to refer to the recovery resources. This will
2822 # work for a separate vendor partition mounted at /vendor or a
2823 # /system/vendor subdirectory on the system partition, for which init will
2824 # create a symlink from /vendor to /system/vendor.
2825
2826 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002827if ! applypatch --check %(type)s:%(device)s:%(size)d:%(sha1)s; then
2828 applypatch \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002829 --flash /vendor/etc/recovery.img \\
Tao Bao4948aed2018-07-13 16:11:16 -07002830 --target %(type)s:%(device)s:%(size)d:%(sha1)s && \\
2831 log -t recovery "Installing new recovery image: succeeded" || \\
2832 log -t recovery "Installing new recovery image: failed"
Tao Baof2cffbd2015-07-22 12:33:18 -07002833else
2834 log -t recovery "Recovery image already installed"
2835fi
2836""" % {'type': recovery_type,
2837 'device': recovery_device,
2838 'sha1': recovery_img.sha1,
2839 'size': recovery_img.size}
2840 else:
Bill Peckhame868aec2019-09-17 17:06:47 -07002841 sh = """#!/vendor/bin/sh
Tao Bao4948aed2018-07-13 16:11:16 -07002842if ! applypatch --check %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s; then
2843 applypatch %(bonus_args)s \\
Bill Peckhame868aec2019-09-17 17:06:47 -07002844 --patch /vendor/recovery-from-boot.p \\
Tao Bao4948aed2018-07-13 16:11:16 -07002845 --source %(boot_type)s:%(boot_device)s:%(boot_size)d:%(boot_sha1)s \\
2846 --target %(recovery_type)s:%(recovery_device)s:%(recovery_size)d:%(recovery_sha1)s && \\
2847 log -t recovery "Installing new recovery image: succeeded" || \\
2848 log -t recovery "Installing new recovery image: failed"
Doug Zongkerc9253822014-02-04 12:17:58 -08002849else
2850 log -t recovery "Recovery image already installed"
2851fi
Dan Albert8b72aef2015-03-23 19:13:21 -07002852""" % {'boot_size': boot_img.size,
2853 'boot_sha1': boot_img.sha1,
2854 'recovery_size': recovery_img.size,
2855 'recovery_sha1': recovery_img.sha1,
2856 'boot_type': boot_type,
2857 'boot_device': boot_device,
2858 'recovery_type': recovery_type,
2859 'recovery_device': recovery_device,
2860 'bonus_args': bonus_args}
Doug Zongkerc9253822014-02-04 12:17:58 -08002861
Bill Peckhame868aec2019-09-17 17:06:47 -07002862 # The install script location moved from /system/etc to /system/bin in the L
2863 # release. In the R release it is in VENDOR/bin or SYSTEM/vendor/bin.
2864 sh_location = os.path.join(sh_dir, "install-recovery.sh")
Tao Bao9f0c8df2015-07-07 18:31:47 -07002865
Tao Bao32fcdab2018-10-12 10:30:39 -07002866 logger.info("putting script in %s", sh_location)
Doug Zongkerc9253822014-02-04 12:17:58 -08002867
Tao Baoda30cfa2017-12-01 16:19:46 -08002868 output_sink(sh_location, sh.encode())
Yifan Hong10c530d2018-12-27 17:34:18 -08002869
2870
2871class DynamicPartitionUpdate(object):
2872 def __init__(self, src_group=None, tgt_group=None, progress=None,
2873 block_difference=None):
2874 self.src_group = src_group
2875 self.tgt_group = tgt_group
2876 self.progress = progress
2877 self.block_difference = block_difference
2878
2879 @property
2880 def src_size(self):
2881 if not self.block_difference:
2882 return 0
2883 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.src)
2884
2885 @property
2886 def tgt_size(self):
2887 if not self.block_difference:
2888 return 0
2889 return DynamicPartitionUpdate._GetSparseImageSize(self.block_difference.tgt)
2890
2891 @staticmethod
2892 def _GetSparseImageSize(img):
2893 if not img:
2894 return 0
2895 return img.blocksize * img.total_blocks
2896
2897
2898class DynamicGroupUpdate(object):
2899 def __init__(self, src_size=None, tgt_size=None):
2900 # None: group does not exist. 0: no size limits.
2901 self.src_size = src_size
2902 self.tgt_size = tgt_size
2903
2904
2905class DynamicPartitionsDifference(object):
2906 def __init__(self, info_dict, block_diffs, progress_dict=None,
2907 source_info_dict=None):
2908 if progress_dict is None:
Tao Baof1113e92019-06-18 12:10:14 -07002909 progress_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002910
2911 self._remove_all_before_apply = False
2912 if source_info_dict is None:
2913 self._remove_all_before_apply = True
Tao Baof1113e92019-06-18 12:10:14 -07002914 source_info_dict = {}
Yifan Hong10c530d2018-12-27 17:34:18 -08002915
Tao Baof1113e92019-06-18 12:10:14 -07002916 block_diff_dict = collections.OrderedDict(
2917 [(e.partition, e) for e in block_diffs])
2918
Yifan Hong10c530d2018-12-27 17:34:18 -08002919 assert len(block_diff_dict) == len(block_diffs), \
2920 "Duplicated BlockDifference object for {}".format(
2921 [partition for partition, count in
2922 collections.Counter(e.partition for e in block_diffs).items()
2923 if count > 1])
2924
Yifan Hong79997e52019-01-23 16:56:19 -08002925 self._partition_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002926
2927 for p, block_diff in block_diff_dict.items():
2928 self._partition_updates[p] = DynamicPartitionUpdate()
2929 self._partition_updates[p].block_difference = block_diff
2930
2931 for p, progress in progress_dict.items():
2932 if p in self._partition_updates:
2933 self._partition_updates[p].progress = progress
2934
2935 tgt_groups = shlex.split(info_dict.get(
2936 "super_partition_groups", "").strip())
2937 src_groups = shlex.split(source_info_dict.get(
2938 "super_partition_groups", "").strip())
2939
2940 for g in tgt_groups:
2941 for p in shlex.split(info_dict.get(
2942 "super_%s_partition_list" % g, "").strip()):
2943 assert p in self._partition_updates, \
2944 "{} is in target super_{}_partition_list but no BlockDifference " \
2945 "object is provided.".format(p, g)
2946 self._partition_updates[p].tgt_group = g
2947
2948 for g in src_groups:
2949 for p in shlex.split(source_info_dict.get(
2950 "super_%s_partition_list" % g, "").strip()):
2951 assert p in self._partition_updates, \
2952 "{} is in source super_{}_partition_list but no BlockDifference " \
2953 "object is provided.".format(p, g)
2954 self._partition_updates[p].src_group = g
2955
Yifan Hong45433e42019-01-18 13:55:25 -08002956 target_dynamic_partitions = set(shlex.split(info_dict.get(
2957 "dynamic_partition_list", "").strip()))
2958 block_diffs_with_target = set(p for p, u in self._partition_updates.items()
2959 if u.tgt_size)
2960 assert block_diffs_with_target == target_dynamic_partitions, \
2961 "Target Dynamic partitions: {}, BlockDifference with target: {}".format(
2962 list(target_dynamic_partitions), list(block_diffs_with_target))
2963
2964 source_dynamic_partitions = set(shlex.split(source_info_dict.get(
2965 "dynamic_partition_list", "").strip()))
2966 block_diffs_with_source = set(p for p, u in self._partition_updates.items()
2967 if u.src_size)
2968 assert block_diffs_with_source == source_dynamic_partitions, \
2969 "Source Dynamic partitions: {}, BlockDifference with source: {}".format(
2970 list(source_dynamic_partitions), list(block_diffs_with_source))
2971
Yifan Hong10c530d2018-12-27 17:34:18 -08002972 if self._partition_updates:
2973 logger.info("Updating dynamic partitions %s",
2974 self._partition_updates.keys())
2975
Yifan Hong79997e52019-01-23 16:56:19 -08002976 self._group_updates = collections.OrderedDict()
Yifan Hong10c530d2018-12-27 17:34:18 -08002977
2978 for g in tgt_groups:
2979 self._group_updates[g] = DynamicGroupUpdate()
2980 self._group_updates[g].tgt_size = int(info_dict.get(
2981 "super_%s_group_size" % g, "0").strip())
2982
2983 for g in src_groups:
2984 if g not in self._group_updates:
2985 self._group_updates[g] = DynamicGroupUpdate()
2986 self._group_updates[g].src_size = int(source_info_dict.get(
2987 "super_%s_group_size" % g, "0").strip())
2988
2989 self._Compute()
2990
2991 def WriteScript(self, script, output_zip, write_verify_script=False):
2992 script.Comment('--- Start patching dynamic partitions ---')
2993 for p, u in self._partition_updates.items():
2994 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
2995 script.Comment('Patch partition %s' % p)
2996 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
2997 write_verify_script=False)
2998
2999 op_list_path = MakeTempFile()
3000 with open(op_list_path, 'w') as f:
3001 for line in self._op_list:
3002 f.write('{}\n'.format(line))
3003
3004 ZipWrite(output_zip, op_list_path, "dynamic_partitions_op_list")
3005
3006 script.Comment('Update dynamic partition metadata')
3007 script.AppendExtra('assert(update_dynamic_partitions('
3008 'package_extract_file("dynamic_partitions_op_list")));')
3009
3010 if write_verify_script:
3011 for p, u in self._partition_updates.items():
3012 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3013 u.block_difference.WritePostInstallVerifyScript(script)
3014 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3015
3016 for p, u in self._partition_updates.items():
3017 if u.tgt_size and u.src_size <= u.tgt_size:
3018 script.Comment('Patch partition %s' % p)
3019 u.block_difference.WriteScript(script, output_zip, progress=u.progress,
3020 write_verify_script=write_verify_script)
3021 if write_verify_script:
3022 script.AppendExtra('unmap_partition("%s");' % p) # ignore errors
3023
3024 script.Comment('--- End patching dynamic partitions ---')
3025
3026 def _Compute(self):
3027 self._op_list = list()
3028
3029 def append(line):
3030 self._op_list.append(line)
3031
3032 def comment(line):
3033 self._op_list.append("# %s" % line)
3034
3035 if self._remove_all_before_apply:
3036 comment('Remove all existing dynamic partitions and groups before '
3037 'applying full OTA')
3038 append('remove_all_groups')
3039
3040 for p, u in self._partition_updates.items():
3041 if u.src_group and not u.tgt_group:
3042 append('remove %s' % p)
3043
3044 for p, u in self._partition_updates.items():
3045 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3046 comment('Move partition %s from %s to default' % (p, u.src_group))
3047 append('move %s default' % p)
3048
3049 for p, u in self._partition_updates.items():
3050 if u.src_size and u.tgt_size and u.src_size > u.tgt_size:
3051 comment('Shrink partition %s from %d to %d' %
3052 (p, u.src_size, u.tgt_size))
3053 append('resize %s %s' % (p, u.tgt_size))
3054
3055 for g, u in self._group_updates.items():
3056 if u.src_size is not None and u.tgt_size is None:
3057 append('remove_group %s' % g)
3058 if (u.src_size is not None and u.tgt_size is not None and
3059 u.src_size > u.tgt_size):
3060 comment('Shrink group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3061 append('resize_group %s %d' % (g, u.tgt_size))
3062
3063 for g, u in self._group_updates.items():
3064 if u.src_size is None and u.tgt_size is not None:
3065 comment('Add group %s with maximum size %d' % (g, u.tgt_size))
3066 append('add_group %s %d' % (g, u.tgt_size))
3067 if (u.src_size is not None and u.tgt_size is not None and
3068 u.src_size < u.tgt_size):
3069 comment('Grow group %s from %d to %d' % (g, u.src_size, u.tgt_size))
3070 append('resize_group %s %d' % (g, u.tgt_size))
3071
3072 for p, u in self._partition_updates.items():
3073 if u.tgt_group and not u.src_group:
3074 comment('Add partition %s to group %s' % (p, u.tgt_group))
3075 append('add %s %s' % (p, u.tgt_group))
3076
3077 for p, u in self._partition_updates.items():
3078 if u.tgt_size and u.src_size < u.tgt_size:
3079 comment('Grow partition %s from %d to %d' % (p, u.src_size, u.tgt_size))
3080 append('resize %s %d' % (p, u.tgt_size))
3081
3082 for p, u in self._partition_updates.items():
3083 if u.src_group and u.tgt_group and u.src_group != u.tgt_group:
3084 comment('Move partition %s from default to %s' %
3085 (p, u.tgt_group))
3086 append('move %s %s' % (p, u.tgt_group))